Re: iptables and NFS

On 2005-12-13 Ghe Rivero wrote:
>   we are going to use netfilter for our main firewall at University
> and a couples of dudes come to my mind now:
>   1.- Since we have severals machines (around 50)  and all king of
> services, which is the best way to have everything more or less order?

There is no simple answer to this question, since it depends heavily on
what services you have, who you want to be able to access them, and what
your network topology looks like. I would suggest you read a good book
on firewalling concepts (e.g. [1]) before proceeding any further.

>   2.- NFS use dinamic ports on conenctions with the clients. Howis it
> supposed to be firewaled (The same can be for some Windows isssues)

NFS is not supposed to traverse any firewall, since it does not provide
any kind of security mechanism whatsoever.

[1] http://www.oreilly.com/catalog/fire2/

Ansgar Wiechers
"Another option [for defragmentation] is to back up your important files,
erase the hard disk, then reinstall Mac OS X and your backed up files."

