On Tue, 22 Feb 2000, you wrote:
> You do not want to have NFS crossing to the outside. Let me repeat this
> again so you understand. YOU DO NOT WANT NFS GOING OUTSIDE. To answer
> you question NFS goes over IP. However, as protocols go it is the
> weakest security wise. I am sure you wouldn't want anybody mounting your
> HD from across the states. =)
Yea, i realize this. I have 3 nics on the firewall. eth0 is public, eth1 is our
internet server and eth2 is our private network. i need to be able to do nfs
across eth2 and eth1...
this still doesn't answer my question ;)
1) will portmap, mountd, nfsd, et al work with only udp (not tcp; rpcinfo -p
shows most of these services taking up both udp AND tcp) and,
2) is there a way to force mountd and statusd to take exact ports instead of
portmap delegating them, or do i need to write a script to find these out and
alter ipchains to suit?
thanx,
Bill
--
William Ahern
MIS, JINSA
---------------------
JINSA Online
http://www.jinsa.org/
---------------------