Dell Wyse Enhanced Ubuntu Linux T50 Manual de usuario Pagina 21

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 220
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 20
Chapter 3. Installation
3.3.4. ThinLinc in a NAT/Split-DNS Environment
Figure 3-4. ThinLinc in a NAT/Split-DNS Environment
At many sites, the internal network is behind a firewall doing Network Adress Translation (NAT). This
means that the IP adresses on the internal network are allocated from so-called RFC1918 space, i.e., they
are within the range 10.0.0.0-10.255.255.255, 172.16.0.0 - 172.31.255.255 or 192.168.0.0 -
192.168.255.255.
As long as ThinLinc servers are only meant to be accessed from the internal network, this is no problem,
and the situation will be like the one described in Section 3.3.1. However, if the ThinLinc servers are
meant to be accessed from the Internet as well, special arrangements need to be made.
Note: An alternative to using a split DNS configuration is to use a client side translation configured
by the HOST_ALIASES parameter, but in most cases, a proper DNS setup is recommended. See
Section 7.7 for more information.
3.3.4.1. Relays
First, relays must be configured in the firewall. One IP address reachable from the outside network per
ThinLinc server needs to be available, and each should be equipped with a relay forwarding traffic from
TCP port 22 on the outside to TCP port 22 on one specific ThinLinc server. In our example, as shown in
Figure 3-4, there is one relay listening to TCP port 22 on the externally reachable IP address x.12.253.1
forwarding traffic to the ThinLinc server on the internal network with IP address 10.0.0.12, one relay
listening on TCP port 22 on the externally reachable IP address x.12.253.2 forwarding traffic to the
ThinLinc server on the internal network with IP address 10.0.0.13, and so on.
11
Vista de pagina 20
1 2 ... 16 17 18 19 20 21 22 23 24 25 26 ... 219 220

Comentarios a estos manuales

Sin comentarios