Koozali.org: home of the SME Server

sme 5.1.2 in server only behind nat router

brian MOore

sme 5.1.2 in server only behind nat router
« on: July 11, 2002, 01:13:29 AM »
Hi all.  I have a few users on my server who want to use u p&p capable applications like msn messenger and things.  I am not enough of a linux expert to edit the ipchains rules manually to make this stuff work.  was thinking of doing the following and would welcome comments.

I have a linksys router which will support up&p with windows xp clients which I could use to connect to the net, however, I am running mail, http, ftp https, and ssh on my sme 5.1.2 box.  I know I can change the sme configuration to server only mode and place it with a static ip behind the other router.  if I open the ports for the services I mentioned above and have them forwarded by the router to the private mode sme server, am I opening up lots of security holes?  also, besides ports, 80, 25, 22, 443 and 21, are there others I need to forward from the router to the sme box?  any comments would be appreciated.

thanks.  brian.