Re: [fw-wiz] NFS for NAS across FW or virt Interface in DMZ.



Cary, Kim wrote:
Folks, if you had to have a single NAS system projected via NFS into
DMZ1 & DMZ2 from Firewall Zone 3 would you do this by providing NAS IP
inside DMZ1 & DMZ2 or by allowing sunrpc/nfs to cross the firewall from
specified hosts?

The NFS protocol is completely insecure. If you really need to do filesharing
between machines, then put those machines into the same subnet and security
zone, rather than disable your firewall to the extent of letting filesharing
pass through it.

(Alternatively, if your security requirements mandate that these machines be in
separate DMZ's or security zones, then your security requirements have indicated
that they shouldn't be sharing files with each other. :)

--
-Chuck
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxx
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Norton 2005 Int Security, Trend PCcillin or Zone Alarm ???????
    ... > I want security I can run on both machines. ... System overhead is higher than standard firewall applications. ... Symantec products do not remove (uninstall) well. ... Micro Trends PC-Cillan is very good (possibly the best in home network ...
    (alt.computer.security)
  • Re: install
    ... You just need to set up your network correctly. ... start by running the Network Setup Wizard on all machines (see ... Problems sharing files between computers on a network are generally caused ... by 1) a misconfigured firewall or overlooked firewall (including a stateful ...
    (microsoft.public.windows.vista.installation_setup)
  • Re: Cant Connect To Network Printer
    ... I have sharing turned on. ... start by running the Network Setup Wizard on all machines (see ... by 1) a misconfigured firewall or overlooked firewall (including a stateful ... put all computers in the same Workgroup. ...
    (microsoft.public.windows.vista.print_fax_scan)
  • Re: Two Vista machine on the same network cant see each other.
    ... -Network set to "Private Network" on both machines ... -Public sharing ON on both machines ... a misconfigured firewall or overlooked firewall (including a stateful ... identical user accounts and passwords on all Workgroup machines; ...
    (microsoft.public.windows.vista.networking_sharing)
  • Re: Shared folders on Xp cannot be found from Vista
    ... Assign passwords and see if it works now. ... firewall misconfiguration issue. ... Includes details about sharing printers as well as files ... start by running the Network Setup Wizard on all machines (see ...
    (microsoft.public.windows.vista.networking_sharing)