help-cfengine
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: cfengine, firewall and security


From: Mark R. Lindsey
Subject: Re: cfengine, firewall and security
Date: Thu, 9 Nov 2000 07:56:06 -0500

: has anybody ever tried to use cfengine through a firewall without
: compromising security ? I mean, keep the reference server protected
: behind a firewall, and synchronize clients located both inside and
: outside the firewall.

I have one cfengine server setup with firewall filtering; the protocol
is straightforward enough -- connections from any TCP port on the client
are made to port 5308 TCP on the cfd server, and no TCP connections are
made from the cfengine server back to the client.

Just setup specific rules on the firewall to allow each external client
to connect to 5308 TCP on the internal cfengine server.





reply via email to

[Prev in Thread] Current Thread [Next in Thread]