Katie,

The Macintosh computers see zones using the AppleTalk protocol, quite
different from TCP/IP.  Your Firebox (like most firewalls) blocks all
non-TCP/IP protocols, such as AppleTalk, Netware, and DECnet.

If your Macs need to see those zones again, you have a few choices:

- Remove the Firebox.  Don't laugh, maybe you need AppleTalk more than you
need a firewall -- every situation is different.

- Replace the Firebox with a firewall that can pass AppleTalk.  I'm using
Netscreen firewalls that pass AppleTalk (no endorsement implied), but
Lucent and a very few other firewalls can pass AppleTalk, too.

- Install an "AppleTalk bypass" -- a second network connection to your
University network which blocks all TCP/IP and passes AppleTalk.

- Install AppleTalk over TCP/IP tunnels on your network and the University
network, and allow those tunnels through your Firebox.

Finally, if for some silly reason you want to get rid of AppleTalk (don't
believe the myths about AppleTalk!), you could force your Macs and other
University resources (printers, servers, etc.) to migrate to all TCP/IP.

Each choice has significant pros and cons depending on your environment.

I am not a Windows wizard, so will let others help with your Windows
domain/NetBIOS problems.

Hope this helps.

-- Rex

At 3:57 PM -0500 1/17/02, Katie Kuehn wrote:
>Until I installed the Firebox, the Windows (98, NT and 2000) boxes were able
>to see multiple domains across the University network.  In addition, the
>MACs were able to see Zones that had the Appletalk requirements.  Once I
>installed the Firebox, even though both the internal and external addresses
>are within the Class B of the University,we cannot browse the other
>domains/zones anymore.  I've opend NetBIOS and am able to "map" to one of
>the domains using IP and then able to browse the server(s) after
>authenticating with a username and password.
>
>I am able to ping the target server from the MACs, but unable to "map"
>because I'm not sure there is a way and am unable to browse to the domain or
>zone from either a pc or mac.
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to