FDS behind NATed firewall

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



I have never gotten this suggestion to work but I did not try it much. You
can use Point to Point IP Sec tunneling. This will remove the SSH layer. it
will be more natural in terms of IP resolution and more standard then making
tunnels.

Edward


On 1/10/07, Patrick Morris <patrick.morris at hp.com> wrote:
>
> On Wed, 10 Jan 2007, Nathaniel Hall wrote:
>
> > I have a master directory server behind a firewall that uses NAT.  I
> > want to place a read only server behind a different firewall.  The new
> > server does have a public IP address.  Here is my setup:
> >
> > Master <--> Firewall (NAT) <--> Internet <--> Firewall <--> Read-Only
> >
> > My initial thought was to write a script (All done and works) that SSHs
> > to the RO server and creates local and remote SSH tunnels.  That would
> > allow me to point the servers to localhost on specific ports so that
> > they would get redirect appropriately and securely.  Right now I am
> > having problems getting them work the way I want them to.  I had it
> > partially working yesterday, but they were synchronizing like a normal
> > system (out of SSH, over port 389).
> >
> > Does anybody have any ideas how this should be done securely?  It is
> > going over the Internet, so security is a must.
>
> I've had decent luck using stunnel for this sort of thing.  I've found
> it to work a lot more reliably than SSH tunnels.
>
> --
> Fedora-directory-users mailing list
> Fedora-directory-users at redhat.com
> https://www.redhat.com/mailman/listinfo/fedora-directory-users
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.fedoraproject.org/pipermail/389-users/attachments/20070110/7dfa6770/attachment.html 


[Index of Archives]     [Fedora User Discussion]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [Fedora News]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Maintainers]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [Fedora Fonts]     [ATA RAID]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora QA]     [Fedora Triage]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Tux]     [Yosemite News]     [Yosemite Photos]     [Linux Apps]     [Maemo Users]     [Gnome Users]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Maemo Users]     [Asterisk PBX]     [Fedora Sparc]     [Fedora Universal Network Connector]     [Fedora ARM]

  Powered by Linux