<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: External Network Unification Part 5: Almost There</title>
	<atom:link href="http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html/feed" rel="self" type="application/rss+xml" />
	<link>http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html</link>
	<description>Big, Honkin' Systems Stuff</description>
	<lastBuildDate>Mon, 09 Jan 2012 19:19:37 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: systemsboy</title>
		<link>http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html/comment-page-1#comment-692</link>
		<dc:creator>systemsboy</dc:creator>
		<pubDate>Thu, 19 Jul 2007 15:48:00 +0000</pubDate>
		<guid isPermaLink="false">http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there/#comment-692</guid>
		<description>Pgreer,&lt;br/&gt;&lt;br/&gt;I&#039;ll have to get back to you on that. I&#039;m not currently at my office and can&#039;t access the settings. I will say that, at the outset, you&#039;ll need SSH ports (22) open. The first sync happens over SSH. Subsequent syncs do not. Therefore I recommend setting the replica up with all ports open initially, then locking things down after the first sync. This is what we did, and it was much easier.&lt;br/&gt;&lt;br/&gt;Also, I remember that our DMZ is fully accessible (for the most part) from our internal network, but not vice-versa. This is pretty essential. Also that the replica on the DMZ is completely blocked from any traffic from the Big Bad Internet by our DMZ firewall. You can probably close most ports on the replica as well if you want to (I recommend it as an extra layer of security).&lt;br/&gt;&lt;br/&gt;Again, when I get back in the office in a few weeks I&#039;ll try to remember to send you the firewall setup info. If you don&#039;t hear from me by the first week in August, and if you still haven&#039;t figured it out, post another comment to remind me.&lt;br/&gt;&lt;br/&gt;Oh, this Apple KBase article may be of some help to you as well:&lt;br/&gt;&lt;a HREF=&quot;http://docs.info.apple.com/article.html?artnum=106439&quot; REL=&quot;nofollow&quot;&gt;Well-Known TCP and UDP Ports&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;-systemsboy</description>
		<content:encoded><![CDATA[<p>Pgreer,</p>
<p>I&#8217;ll have to get back to you on that. I&#8217;m not currently at my office and can&#8217;t access the settings. I will say that, at the outset, you&#8217;ll need SSH ports (22) open. The first sync happens over SSH. Subsequent syncs do not. Therefore I recommend setting the replica up with all ports open initially, then locking things down after the first sync. This is what we did, and it was much easier.</p>
<p>Also, I remember that our DMZ is fully accessible (for the most part) from our internal network, but not vice-versa. This is pretty essential. Also that the replica on the DMZ is completely blocked from any traffic from the Big Bad Internet by our DMZ firewall. You can probably close most ports on the replica as well if you want to (I recommend it as an extra layer of security).</p>
<p>Again, when I get back in the office in a few weeks I&#8217;ll try to remember to send you the firewall setup info. If you don&#8217;t hear from me by the first week in August, and if you still haven&#8217;t figured it out, post another comment to remind me.</p>
<p>Oh, this Apple KBase article may be of some help to you as well:<br /><a HREF="http://docs.info.apple.com/article.html?artnum=106439" REL="nofollow">Well-Known TCP and UDP Ports</a></p>
<p>-systemsboy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pgreer</title>
		<link>http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html/comment-page-1#comment-691</link>
		<dc:creator>pgreer</dc:creator>
		<pubDate>Tue, 17 Jul 2007 14:20:00 +0000</pubDate>
		<guid isPermaLink="false">http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there/#comment-691</guid>
		<description>could you send me some info on how you setup the machine to be a replica in the dmz? like what ports do you have open, etc.&lt;br/&gt;&lt;br/&gt;I am trying to set up almost the same system at my work place.&lt;br/&gt;&lt;br/&gt;mail to pgreer(at)mac(dot)com</description>
		<content:encoded><![CDATA[<p>could you send me some info on how you setup the machine to be a replica in the dmz? like what ports do you have open, etc.</p>
<p>I am trying to set up almost the same system at my work place.</p>
<p>mail to pgreer(at)mac(dot)com</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: systemsboy</title>
		<link>http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html/comment-page-1#comment-690</link>
		<dc:creator>systemsboy</dc:creator>
		<pubDate>Mon, 02 Jul 2007 18:36:00 +0000</pubDate>
		<guid isPermaLink="false">http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there/#comment-690</guid>
		<description>Thanks MatX! We&#039;re pretty pleased with ourselves.&lt;br/&gt;&lt;br/&gt;-systemsboy</description>
		<content:encoded><![CDATA[<p>Thanks MatX! We&#8217;re pretty pleased with ourselves.</p>
<p>-systemsboy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: matx</title>
		<link>http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there.html/comment-page-1#comment-689</link>
		<dc:creator>matx</dc:creator>
		<pubDate>Sun, 01 Jul 2007 05:25:00 +0000</pubDate>
		<guid isPermaLink="false">http://systemsboy.com/2007/06/external-network-unification-part-5-almost-there/#comment-689</guid>
		<description>Great work. Super duper awesome tight integration.</description>
		<content:encoded><![CDATA[<p>Great work. Super duper awesome tight integration.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced
Database Caching using disk: basic
Object Caching 275/276 objects using disk: basic

Served from: systemsboy.com @ 2012-02-10 03:38:34 -->
