On Wednesday 24 November 2010 09:49:14 Brendan Halpin wrote:
> I have two machines, A in the DMZ and B in the protected part of the
> network.
>> B can see A, but A can't see (ping, etc) B unless B has initiated a
> connection (e.g., A can respond to B's HTTP requests).
>> Is there a secure way to make a more general connection from B to A so
> that A can "see" B in a wider sense (ssh from A to B, read B-mounted
> samba share from A, etc.).
>> Brendan
If you want A to be able to initiate a connection to B then you need to open
the firewall to allow this...
An alternative would be to enable port-forwarding on 'A's sshd_config and run a
reverse tunnel over ssh.
Ruairi
Maintained by the ILUG website team. The aim of Linux.ie is to
support and help commercial and private users of Linux in Ireland. You can
display ILUG news in your own webpages, read backend
information to find out how. Networking services kindly provided by HEAnet, server kindly donated by
Dell. Linux is a trademark of Linus Torvalds,
used with permission. No penguins were harmed in the production or maintenance
of this highly praised website. Looking for the
Indian Linux Users' Group? Try here. If you've read all this and aren't a lawyer: you should be!