On 20 Jul 00, at 12:21, netcomm wrote:
> I am trying to make a stand alone NT server ( in the DMZ) as
member server
> of a domain which is behind a Firewall ( FW-1)...
> now I don want to use TCP/IP for this I want to use NetBEUI
only...but FW-1
> allows rules for objects defined on ip address only.???
> Is it possible to define objects based on their NetBios names???
and rules
> using such objects.....?????
No. NetBEUI is not routable; devices connected using NetBEUI
essentially need to be on the same subnet. A few firewalls I've seen
have a mode where they can work as a *bridge* rather than a router;
while necessary, this is not sufficient for your needs unless it also
allows (and, preferably *filters*) NetBEUI.
I think what you are trying to do is a natural progression form an
approach that binds WINS/NetBIOS only to NetBEUI to ensure that it
isn't reachable from the Internet. Unfortunately, that approach only
works for small single-segment networks (you probably shouldn't use
NetBEUI if there are more than about 20 hosts on your network); once
you introduce segmentation, subnets, DMZ, etc... wll, you've
outgrown NetBEUI at that point.
David G
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]