[ale] One NIC, two IP addresses on different VLANs?
Alex Carver
agcarver+ale at acarver.net
Wed Nov 19 15:18:02 EST 2014
Let me write just a few words on why your customer data machine
shouldn't see the Internet directly:
Target, Home Depot, Michaels, Staples, US Postal Service, ...
On 2014-11-19 12:02, Raj Wurttemberg wrote:
> Yeah, I have actually started that process. Seems the most secure.
>
> Kind regards,
> /Raj
>
>
>> -----Original Message-----
>> From: ale-bounces at ale.org [mailto:ale-bounces at ale.org] On Behalf Of Alex
>> Carver
>> Sent: Wednesday, November 19, 2014 2:47 PM
>> To: ale at ale.org
>> Subject: Re: [ale] One NIC, two IP addresses on different VLANs?
>>
>> Sounds like the better idea is to keep the Internet away from your system
>> hosting customer data NFS and set up a completely independent machine
>> that acts as a local mirror of the Ubuntu repositories. Let that machine
> have
>> two NICs one for each VLAN, put lots of firewall rules in place to make
> sure it
>> can only contact the external repositories and reject incoming connections
>> then a few cron jobs to keep it synced every day.
>
>
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo
>
>
More information about the Ale
mailing list