bernhard.waldvogel@freesurf.ch
2007-Jan-11 08:14 UTC
RE: [Fedora-directory-users] FDS behind NATed firewall
> I have a master directory server behind a firewall that uses NAT. I > want to place a read only server behind a different firewall. The new> server does have a public IP address. Here is my setup: > > Master <--> Firewall (NAT) <--> Internet <--> Firewall <--> Read-OnlyQuestion, wath about LDAPS? Is there anything against to use ldaps for the replication? This should be secure enough, or not? Neu: Das erste ADSL-Abo ohne Monatsgebühr! Steigen Sie jetzt auf sunrise ADSL free um. http://www.sunrise.ch/privatkunden/iminternetsurfen/adsl/adsl_abosundpreise/adsl_gelegenheitssurfer/adsl_free.htm
Nathaniel Hall
2007-Jan-12 04:31 UTC
Re: [Fedora-directory-users] FDS behind NATed firewall
bernhard.waldvogel@freesurf.ch wrote:>> I have a master directory server behind a firewall that uses NAT. I >> want to place a read only server behind a different firewall. The new >> >> server does have a public IP address. Here is my setup: >> >> Master <--> Firewall (NAT) <--> Internet <--> Firewall <--> Read-Only >> > > Question, wath about LDAPS? Is there anything against to use ldaps for the > replication? > This should be secure enough, or not?Well, I have considered this, but I have to make sure that any new connections from the RO server to the master go through the SSH tunnel.