NIS service across firewalled subnets

2007-12-25 0:39:00

Hi gurus,

We hope to subnet a network segement to restrict acccess between production
and development servers.

Segment A will be production servers.
Segment B will be development servers.

Cross-segment traffic will allow ssh/scp for admin workstations only.

We plan to install a NIS master in Segment A.

When we tested out, it seems like NIS clients in segment B is unable to
bound to the NIS master. We noticed NIS clients does a broadcast to it's own
subnet and the firewall is unable to relay the broadcast traffic.

If such firewall blocked segment does not allow NIS traffic, and we have to
setup a NIS slave, does anyone know the port/traffic type require to allow
ypxfr if I were to install a NIS salve in segment B?

Have anyone does similar setups before?

Comments

Got something to say?

You must be logged in to post a comment.