Veritas-bu

[Veritas-bu] FW: Verifying a feature of vnetd's no-callback feature

2005-01-25 12:12:45
Subject: [Veritas-bu] FW: Verifying a feature of vnetd's no-callback feature
From: pkeating AT bank-banque-canada DOT ca (Paul Keating)
Date: Tue, 25 Jan 2005 12:12:45 -0500
This is a multi-part message in MIME format.

------_=_NextPart_001_01C50301.163616F3
Content-Type: text/plain;
        charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

Yes, exactly right.......what is *needed* by both myself, and the
original poster, is a way for NB to initate connection from server in
production to client in DMZ, and maintain that connection for the
duration of the backup, rather than signalling the client and having the
client open the connection back to the server in production (single
port, or random port.....single security hole, or multiple)
=20
vnetd still requires an open port...... a security hole.....a slightly
more obscure hole than leaving all ports open, but not much, when you're
talking about secure environments.
=20
Paul

        -----Original Message-----
        From: David Trostli
[mailto:david.trostli AT veritas-software.com DOT br]=20
        Sent: January 25, 2005 11:25 AM
        To: Paul Keating
        Subject: RES: [Veritas-bu] FW: Verifying a feature of vnetd's
no-callback feature
        Importance: High
=09
=09
        even using vnetd you need to open port 13724 in the firewall. If
you don't do this you won't be able to go througn you DMZ. The purpose
of vnetd is to avoid the use random reserved port.
        =20
        David


------_=_NextPart_001_01C50301.163616F3
Content-Type: text/html;
        charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD><TITLE>Message</TITLE>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dus-ascii">
<META content=3D"MSHTML 6.00.2800.1170" name=3DGENERATOR>
<STYLE>@font-face {
        font-family: Book Antiqua;
}
@page Section1 {size: 8.5in 11.0in; margin: 1.0in .75in 1.0in .75in; }
P.MsoNormal {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
LI.MsoNormal {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
DIV.MsoNormal {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
H1 {
        FONT-SIZE: 14pt; MARGIN: 12pt 0in 3pt; FONT-FAMILY: "Book Antiqua"
}
H2 {
        FONT-SIZE: 12pt; MARGIN: 12pt 0in 3pt; FONT-STYLE: italic; FONT-FAMILY: 
=
"Book Antiqua"
}
H3 {
        FONT-WEIGHT: normal; FONT-SIZE: 12pt; MARGIN: 12pt 0in 3pt; =
FONT-FAMILY: "Book Antiqua"
}
P.MsoHeader {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
LI.MsoHeader {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
DIV.MsoHeader {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
P.MsoFooter {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
LI.MsoFooter {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
DIV.MsoFooter {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
A:link {
        COLOR: blue; TEXT-DECORATION: underline
}
SPAN.MsoHyperlink {
        COLOR: blue; TEXT-DECORATION: underline
}
A:visited {
        COLOR: purple; TEXT-DECORATION: underline
}
SPAN.MsoHyperlinkFollowed {
        COLOR: purple; TEXT-DECORATION: underline
}
P.ABLOCKPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
LI.ABLOCKPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
DIV.ABLOCKPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
P.ABULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
LI.ABULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
DIV.ABULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
P.AINDENTEDBULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
LI.AINDENTEDBULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
DIV.AINDENTEDBULLET {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
P.AINDENTEDPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
LI.AINDENTEDPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
DIV.AINDENTEDPARA {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
P.ablockpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
LI.ablockpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
DIV.ablockpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt; FONT-FAMILY: "Book Antiqua"
}
P.abullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
LI.abullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
DIV.abullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
P.aindentedbullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
LI.aindentedbullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
DIV.aindentedbullet0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 33.1pt; TEXT-INDENT: -16.55pt; =
FONT-FAMILY: "Book Antiqua"
}
P.aindentedpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
LI.aindentedpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
DIV.aindentedpara0 {
        FONT-SIZE: 11pt; MARGIN: 0in 0in 0pt 16.55pt; FONT-FAMILY: "Book =
Antiqua"
}
SPAN.emailstyle23 {
        COLOR: windowtext; FONT-FAMILY: Arial
}
SPAN.EmailStyle28 {
        COLOR: navy; FONT-FAMILY: Arial
}
DIV.Section1 {
        page: Section1
}
</STYLE>
</HEAD>
<BODY lang=3DEN-US vLink=3Dpurple link=3Dblue>
<DIV><SPAN class=3D715380817-25012005><FONT face=3DArial color=3D#800000 =
size=3D2>Yes,=20
exactly right.......what is *needed* by both myself, and the original =
poster, is=20
a way for NB to initate connection from server in production to client =
in DMZ,=20
and maintain that connection for the duration of the backup, rather than =

signalling the client and having the client open the connection back to =
the=20
server in production (single port, or random port.....single security =
hole, or=20
multiple)</FONT></SPAN></DIV>
<DIV><SPAN class=3D715380817-25012005><FONT face=3DArial color=3D#800000 =

size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D715380817-25012005><FONT face=3DArial color=3D#800000 =
size=3D2>vnetd=20
still requires an open port...... a security hole.....a slightly more =
obscure=20
hole than leaving all ports open, but not much, when you're talking =
about secure=20
environments.</FONT></SPAN></DIV>
<DIV><SPAN class=3D715380817-25012005><FONT face=3DArial color=3D#800000 =

size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D715380817-25012005><FONT face=3DArial color=3D#800000 =

size=3D2>Paul</FONT></SPAN></DIV>
<BLOCKQUOTE dir=3Dltr=20
style=3D"PADDING-LEFT: 5px; MARGIN-LEFT: 5px; BORDER-LEFT: #800000 2px =
solid; MARGIN-RIGHT: 0px">
  <DIV></DIV>
  <DIV class=3DOutlookMessageHeader lang=3Den-us dir=3Dltr =
align=3Dleft><FONT=20
  face=3DTahoma size=3D2>-----Original Message-----<BR><B>From:</B> =
David Trostli=20
  [mailto:david.trostli AT veritas-software.com DOT br] <BR><B>Sent:</B> =
January 25,=20
  2005 11:25 AM<BR><B>To:</B> Paul Keating<BR><B>Subject:</B> RES: =
[Veritas-bu]=20
  FW: Verifying a feature of vnetd's no-callback =
feature<BR><B>Importance:</B>=20
  High<BR><BR></FONT></DIV>
  <DIV><SPAN class=3D652442316-25012005><FONT face=3DArial =
color=3D#0000ff size=3D2>even=20
  using vnetd you need to open port 13724 in the firewall. If you don't =
do this=20
  you won't be able to go througn you DMZ. The purpose of vnetd is to =
avoid the=20
  use&nbsp;random reserved port.</FONT></SPAN></DIV>
  <DIV><SPAN class=3D652442316-25012005><FONT face=3DArial =
color=3D#0000ff=20
  size=3D2></FONT></SPAN>&nbsp;</DIV>
  <DIV><SPAN class=3D652442316-25012005><FONT face=3DArial =
color=3D#0000ff=20
  size=3D2>David</FONT></SPAN></DIV></BLOCKQUOTE></BODY></HTML>
=00
------_=_NextPart_001_01C50301.163616F3--

<Prev in Thread] Current Thread [Next in Thread>