Koozali.org: home of the SME Server

Obsolete Releases => SME Server 7.x => Topic started by: remstrus on July 23, 2006, 06:22:32 PM

Title: Server Only Mode
Post by: remstrus on July 23, 2006, 06:22:32 PM
Hey

Sorry for the newbie question but i need some advice, I have d/l SME 7x to play with, I am wondering which option to choose when selecting the server config.

My system is hard wired to a netgear router which in turn is connected to a cable modem, my system also has 1 nic. I use the router to wirelessly connect 2 other pc's to surf the web.

My question is, does server only mode limit connectivity to the LAN (any SME hosted website is not accessible from the net) or do I need server + gateway for email/webserver accessibility via the internet?

Thanks and sorry for an obvious newb question!

Phil
Title: Server Only Mode
Post by: MSmith on July 23, 2006, 08:38:03 PM
You could forward port 80 on the router to your SME Server, but in server-only mode certain important security features are not enabled.  It would be better if you were to either:

1.  Put another cheapo NIC in the SME Server, do not use the LAN side, configure in server-gateway mode.  Configure for static IP on the WAN side and forward port 80 on the router to the SME server's IP.  Use PPTP VPN to connect to your SME Server as if from "outside" and administer.

2.  Again, put a second NIC in the SME box and feconfigure your network as follows:

Cablemodem <--> SME Server WAN side :: SME Server LAN side <--> router <--> PCs.

You have several choices with that latter:  you could configure your router as an access point only, if possible, or you could have it take its "WAN" IP from the SME server and not change anything else.
Title: Server Only Mode
Post by: girkers on July 24, 2006, 12:45:23 AM
I use my SME server in Server Only mode on the inside of my router and as long as I forward the correct ports through my router, the server is accessible from the outside world.
Title: Server Only Mode
Post by: duncan on July 24, 2006, 08:57:15 AM
Server only
One nic
Port forward any services required - web, secure mail, pptp etc.