A NFS and Firewall question

From: Rich Bonfoey (Rich.Bonfoey_at_mail.tribnet.com)
Date: 04/30/04

  • Next message: sreenath sarikonda: "disksuite mirroring question."
    To: "Sun Managers (sunmanagers@sunmanagers.org)" <sunmanagers@sunmanagers.org>
    Date: Fri, 30 Apr 2004 08:23:44 -0700
    
    

    Greetings

    A question came up about doing an NFS mount thru a firewall into our office.
    We have several servers setting outside the fire wall. A question was asked
    if a NFS connection from one of the servers ( servers are running a couple
    of different flavors of unix - our internet guy likes em ) back thru the
    firewall to a server ( solaris 8) inside the fire wall. I have looked at
    the archives and found some old references ( 1996 ) to not do NFS to the
    outside world ( big security hole ). I was wondering if anyone has had to
    deal with a similar request. Also has anyone had any experience with AFS ?
    I read that it was more secure and better adapted to something like what we
    are looking at.

    Any help is appreciated

    Thanks

    Richard Bonfoey
    The News Tribune
    Information Systems
    Successfully Meeting the Business Needs of
    The News Tribune through Information Technology
    _______________________________________________
    sunmanagers mailing list
    sunmanagers@sunmanagers.org
    http://www.sunmanagers.org/mailman/listinfo/sunmanagers


  • Next message: sreenath sarikonda: "disksuite mirroring question."

    Relevant Pages

    • Re: NFS mounts to NetApp
      ... is to gather some statistics from your Sun servers to verify throughput ... Netapp's through our Sun server we get something like: ... > having regarding NFS timeouts to NetApp filers from Sun Solaris boxes. ... > We have a NetApp filer cluster where each partner has a fiber gig ...
      (comp.unix.solaris)
    • Re: The dreaded "Alternatives to NFS" question
      ... >> to server secure data that is stored on servers based in a DMZ. ... > over NFS (unless you consider the software itself so confidential that ... confidential data between hosts but you're still wrong. ...
      (comp.security.unix)
    • SUMMARY: Errors writing large files via NFS
      ... applications and via NFS on our Tru64 5.1A PK5 servers. ... I had originally dismissed patch t64kit0019900-v51ab23-e-20030906 as not ... UNIX NFS client attempts to increase the size of an AdvFS file." ...
      (Tru64-UNIX-Managers)
    • Re: NFS EINVAL on open(... | O_TRUNC) on 2.6.23.9
      ... Sorry for being down for so long but i have decided to test the latest 2.6.24 kernel because of the huge number of NFS patches introduced mainly by Netapp people, hoping that maybe the problem would have magically disappeared, but... ... I am really interested in finding out whats wrong with NFSD/CFSD and if it was a problem of NFS compliance i would really be glad to find out what to do to patch those servers, but im really far to be able to do it alone. ... User space servers are usually not tested with NFS client changes, since their use is infrequent compared with Solaris, NetApp filers, and the Linux knfsd. ...
      (Linux-Kernel)
    • Re: nfs in FC5
      ... to Server" I could not find a way to make nfs servers visible. ... I know of no way under fedora to detect NFS servers. ... To Access Network Places ... use the file manager to access the network places. ...
      (Fedora)