RE: Shared drives through a firewall



Its just a big no no no no no NON, NEIN,

There are loads of reasons why not to - as you have said you have
googled this and been inundated with reasons why not to so I wont put
you through the pain

Can't you get the client to tunnel up to the firewall using IPSEC or
similiar and then allow NetBIOS/TCP 445 or 139 from the endpoint onwards
if needs be?

Latency issues will still be a pain when tunneling due to some overhead
on building and maintaining the tunnel, CIFS access doesn't work well on
a WAN anyhow

I take it the orientation is internet --> DMZ and not Trusted --> DMZ?



-----Original Message-----
From: listbounce@xxxxxxxxxxxxxxxxx [mailto:listbounce@xxxxxxxxxxxxxxxxx]
On Behalf Of aeheald@xxxxxxxxx
Sent: 22 March 2007 02:01
To: focus-ms@xxxxxxxxxxxxxxxxx
Subject: Shared drives through a firewall

Hello Group;

I am trying to persuade a client NOT to map a drive through two
firewalls to an untrusted server in a DMZ to run an application. I've
tried Googling Netbios and security, but get so many entries as to be
useless.

Other than the latency issues, and my ten cents that it seems to me to
be an enormously foolish idea, can you folks offer me any further
ammunition?

Big Thanks if you can

Eigen



Relevant Pages

  • Re: Exchange Outlook und Sygate Personal Firewall
    ... > Ich versuche per Outlook mein Exchange Postfach abzurufen. ... wenn meine Sygate Personal Firewall deaktiviert ist. ... Ich hab deinen Beitrag so verstanden, daß der Tunnel nur aufgebaut ...
    (microsoft.public.de.exchange)
  • Re: Telnet over WAN latency troubleshooting
    ... up an SNMP rule on the firewall central site firewall and let the Alpha ... the tunnel they should not be aware of the traffic type... ... either to the customer central site or our own location. ... the latency is very obvious; when we telnet back to ...
    (comp.os.vms)
  • RE: How safe is a VPN connexion from within an internal network?
    ... Your biggest problem will be that with a tunnel originating behind your ... firewall, all the tunnel traffic through your firewall is encrypted and ... How safe is a VPN connexion from within an internal network? ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ...
    (Security-Basics)
  • RE: [fw-wiz] so much for "deny all"
    ... Despite the obvious problems firewall vendors are ultimately ... tunnel traffic over innocuous ports. ... Kerry Thompson, CCNA CISSP ...
    (Firewall-Wizards)
  • Re: Anyway to start the "Messenger" service only when connected to
    ... several reasons: They don't necessarily know how to use it or need it (or it ... and in such case, there's no router. ... If you're to tell me to activate the software firewall. ... >> Internet with every mean available to them. ...
    (microsoft.public.exchange.admin)

Quantcast