Koozali.org: home of the SME Server

Local Networks Option

Allen Rapini

Local Networks Option
« on: December 19, 2000, 12:04:35 AM »
I have a Cisco router, with digital modems connected to my frac. T1. The digital modems are on an 800#, and are used by outside employees for access. These are in the 192.168.2.xxx range. The internal network is 192.168.3.xxx/255.255.255.0

Currently, the T and the modems input to the network is split, with the modems bypassing the firewall. I need to change this, but am not sure how the e-smith server will behave with these changes.

I sepcifically want the dial-up users to behave as internal users, with the same priviledges/restrictions as those inside the network, but not open things up on the T side. Is this possible with the local networks option?, will the external NIC accept requests from these devices, even though they are outside the network and treat them as \"internal\".

This may be beyond the scope of the product, but I have been very impressed with everything how everything just works so far, and am anxious to try this out further.

Thanks in Advance

Allen

Allen Rapini

RE: Local Networks Option
« Reply #1 on: December 20, 2000, 02:39:45 AM »
never mind, I have found a better solution.

Allen

Damien Curtain

RE: Local Networks Option
« Reply #2 on: December 25, 2000, 12:54:33 AM »
Which was?

--
 Damien

Allen Rapini

RE: Local Networks Option
« Reply #3 on: December 26, 2000, 03:26:02 PM »
i wasn't happy with the requirement of the ip traffic inbound from the router to the e-smith box, since it would be difficult to tell whether the data was coming from the mica modem, or the internet.
i will split the ip traffic up, and allow only ACL filtered packets to hit the firewall. All other ip traffic and IPX via the mica modem for a few people will be radius protected access.
once i saw how well the imap support works, it is not necessary to allow very much more, and i will be working on limiting just that