reverse firewall connections

Robert Dahlem Robert.Dahlem "at" frankfurt.netsurf.de
Thu, 12 Nov 1998 23:00:50 +0000


Tim,

On Wed, 11 Nov 1998 07:41:18 -0000, Tim Nicholson wrote:

>Whist there has been a lot of heat recently about using VNC to get into a
>firewalled environment I have need to use it to get out!
>I use VNC within a secured area to support remote systems, however sometimes
>these systems go outside the confines of this environment but I still wish
>to support them.
>
>What are the issues when the client is within the firewall and the server
>outside. It seems to me to be no different to say http or ftp operations.
>
>What would one need to do to the firewall to enable it to work?

Ca depend. :-)

If your firewall basically is some kind of a castrated router, you need to do 
nothing but have the firewall admin open connections to 
<address-of-destination>:<5900+display-number-of-destination> for you.

If your firewall does not route but is something like an application gateway, you 
need a plug gateway on the firewall listening on port 5900 plus some display 
number you can choose and plugging for you to <dest-address>:5900+<dest-display>.

You can find a plug gateway i.e. in the firewall toolkit (look out for fwtk).

Hasta la vista,
               Robert

-- 
---------------------------------------------------------------
Robert.Dahlem "at" frankfurt.netsurf.de
Radio Bornheim - 2:2461/332 "at" fidonet +49-69-4930830  (ZyX, V34)
                 2:2461/326 "at" fidonet +49-69-94414444 (ISDN X.75)
---------------------------------------------------------------


---------------------------------------------------------------------
The VNC mailing list     -   see http://www.orl.co.uk/vnc/intouch.html
---------------------------------------------------------------------