Hi Lonnie,

If you have opened and forwarded the ports 137, 138, and 139 (Which is 
sounds like you have), then you should be up and working. I have had this 
working on several occasions with Win2K, and if you are using Win95OSR2 or 
better - then you should be able to connect by IP rather than using an 
LMHOSTS file. eg. \\24.10.15.75\MyShare. I would not be worried so much 
about the NetBIOS traffic that you are sending over the WAN, but rather that 
you have exposed that computer to the computers outside of your firewall. 
Most of the hacks that take place against Microsoft server, run through SMB.

I have opted to use an FTP server on the internal network (it was easier for 
me to setup than VPN), and FTP files up and down. This actually performs 
much faster and reliable file transfers. The catch with DCD, is that I could 
only get that working with an FTP server that allows you to set the range 
for passive FTP. I use GUILDFTP on Win2K, but there should be something that 
fits the bill on Linux.

Cheers
edt

>From: "Lonnie Cumberland" <[EMAIL PROTECTED]>
>To: <[EMAIL PROTECTED]>
>CC: <[EMAIL PROTECTED]>
>Subject: Re: [Leaf-user] Samba across Eigerstein LRP
>Date: Fri, 22 Feb 2002 07:35:05 -0500 (EST)
>
>Actually your are VERY right and I am now really looking into a VPN
>solution.
>
>Thnaks for the advice.
>Lonnie
>
> > Yeech, you seems to want to broadcast all that NetBIOS stuff
> > into the WAN connection that we're all spending years trying
> > to block :(
> >
> > First, I will warn you .... opening those ports on your firewall
> > with any OS (particuarly the Win9x/ME group) is pretty much
> > like using a piece of cardboard to stop a tank. Opening up
> > ssh/sftp or IPSec would be _highly_ recommended to doing NetBIOS.
> >
> >
> > In fact, I am not sure that this would work at all w/o VPN
> > because of the name resolution and MAC addressing. I wouldn't
> > suggest
> > WINS here at all, but you may come up with something possibly
> > with a hosts or lmhosts file(s) on both computers. WINS
> > addressing and DNS are similar, yet worlds apart in reality which
> > makes me
> > think that this would be very difficult to accomplish regardless
> > of what you do to the firewall.
> >
> > In my experience, I would either do ftp w/address filtering (and
> > permissions), VPN, or ssh/sftp with the emphasis on the latter
> > two.
> > --
> >
> > ~Lynn Avants
> > aka Guitarlynn
> >
> > guitarlynn at users.sourceforge.net
> > http://leaf.sourceforge.net
> >
> > If linux isn't the answer, you've probably got the wrong
> > question!
> >
> > _______________________________________________
> > Leaf-user mailing list
> > [EMAIL PROTECTED]
> > https://lists.sourceforge.net/lists/listinfo/leaf-user
>
>
>--
>  Lonnie Cumberland
>  OutStep Technologies Incorporated
>  EMAIL: [EMAIL PROTECTED]
>       : [EMAIL PROTECTED]
>
>  The Basis Express Virtual Office
>                &
>  Data Backup and Recovery Services
>
>  URL: http://www.basis-express.com
>
>"The Virtual Office without boundries!!!"
>
>
>
>
>
>_______________________________________________
>Leaf-user mailing list
>[EMAIL PROTECTED]
>https://lists.sourceforge.net/lists/listinfo/leaf-user


_________________________________________________________________
Join the world’s largest e-mail service with MSN Hotmail. 
http://www.hotmail.com


_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to