Re: running cfengine across firewall

From: Eric Sorenson
Subject: Re: running cfengine across firewall
Date: Thu, 27 Jan 2005 11:17:09 -0800 (PST)

On Wed, 26 Jan 2005, Michael Chan wrote:

> Have any one set up and run cfengine across the
> firewall.   Are there any requisite for ports to be
> open on the firewall.  Thanks.

Well, cfengine uses tcp/5308 for copy: communication, so
in theory that's all you'd need to open. Be careful though,
that you don't let the world talk through the nat to your
cfservd directly and that your cfservd.conf additionally 
restricts what hosts it'll talk to.


