On 20 Jul 00, at 12:21, netcomm wrote:

> I am trying to make  a stand alone NT server ( in the DMZ) as 
member server
> of a domain which is behind a Firewall ( FW-1)...
> now I don want to use TCP/IP for this I want to use NetBEUI 
only...but FW-1
> allows rules for objects defined on ip address only.???
> Is it possible to define objects based on their NetBios names??? 
and rules
> using such objects.....?????

  No.  NetBEUI is not routable; devices connected using NetBEUI 
essentially need to be on the same subnet.  A few firewalls I've seen 
have a mode where they can work as a *bridge* rather than a router; 
while necessary, this is not sufficient for your needs unless it also 
allows (and, preferably *filters*) NetBEUI.

  I think what you are trying to do is a natural progression form an 
approach that binds WINS/NetBIOS only to NetBEUI to ensure that it 
isn't reachable from the Internet.  Unfortunately, that approach only 
works for small single-segment networks (you probably shouldn't use 
NetBEUI if there are more than about 20 hosts on your network); once 
you introduce segmentation, subnets, DMZ, etc...  wll, you've 
outgrown NetBEUI at that point.

David G


-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to