Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5 -- use a VPN instead?





On Wed, 26 Mar 2008, Nico Kadel-Garcia wrote:

On 25 Mar, 09:12, Rob <r...@xxxxxxxxxxx> wrote:

Steve,

what about using tcp_wrappers as to perform a "route delete" on the offending IP?

If memory serves, there was a porting of tcp_wrapper for SCO OS5 on a TLS076a
on the FTP site:

ftp://ftp.sco.com/pub/TLS/tls076a.tcp_wrappers.tar.Z

Hope this helps!

If our faithful here only needs SSH access from a small set of well-
maintained sites, that might work well. However, if he has clients who
use NAT on their ISP networks (such as AOL, which uses 10.* internal
addresses), than the tcp_wrapper will block the NAT and everything
behind the NAT server.

Then perhaps a VPN (such as OpenVPN) is a more appropriate solution for remote access, instead of SSH (although SSH can be used over the VPN).


.



Relevant Pages

  • NAT/ROUTING over a VPN : questions...
    ... I have been trying to share a VPN connection between two FreeBSD machines; however I'm facing with some very weird performance issue. ... The machine where the vpn client is running is configured to act as a gateway and also run NAT. ... Behind the VPN server; we have a ssh and cvs server running; you can access the CVS repository when you connect using ssh. ...
    (comp.unix.bsd.freebsd.misc)
  • Re: NATting both ways
    ... on my "VPN" network off a PIX 525. ... We are using ip nat inside and ip nat outside on our inside and ... creates a VPN to another router on a remote network. ... crypto map CLIENTMAP client authentication list default ...
    (comp.dcom.sys.cisco)
  • Re: VPN From W2K/Pro to W2K Server Doesn;t Work Through Firewall
    ... My belief is that your NAT ... My understanding is that IPSec AH protocol does not work with NAT devices ... IPSec operates in either one of two modes - transport mode or tunnel mode. ... provide a VPN remote access solution. ...
    (microsoft.public.win2000.security)
  • Re: VPN From W2K/Pro to W2K Server Doesn;t Work Through Firewall
    ... I did know you have Linux for NAT and my original suggestions still stand. ... Windows 2000 server through a Linux router with NAT. ... solution has IPsec passthrough, NAT breaks IPsec AH. ... regardless of what vendor you're using for NAT and VPN. ...
    (microsoft.public.win2000.security)
  • Re: Remote sync with Outlook via WiFi or other alternatives
    ... more about using VPN & PPTP. ... or are we still running into the same problem with NAT? ... No it's not difficutl to configure Wi-Fi or Cellular on a Pocket PC. ... > ability to sync with the Pocket PC) so you can keep everyone up to date. ...
    (microsoft.public.pocketpc.activesync)

Quantcast