[ale] One NIC, two IP addresses on different VLANs?

Alex Carver agcarver+ale at acarver.net
Wed Nov 19 15:18:02 EST 2014


Let me write just a few words on why your customer data machine
shouldn't see the Internet directly:

Target, Home Depot, Michaels, Staples, US Postal Service, ...



On 2014-11-19 12:02, Raj Wurttemberg wrote:
> Yeah, I have actually started that process. Seems the most secure.
> 
> Kind regards,
> /Raj
> 
> 
>> -----Original Message-----
>> From: ale-bounces at ale.org [mailto:ale-bounces at ale.org] On Behalf Of Alex
>> Carver
>> Sent: Wednesday, November 19, 2014 2:47 PM
>> To: ale at ale.org
>> Subject: Re: [ale] One NIC, two IP addresses on different VLANs?
>>
>> Sounds like the better idea is to keep the Internet away from your system
>> hosting customer data NFS and set up a completely independent machine
>> that acts as a local mirror of the Ubuntu repositories.  Let that machine
> have
>> two NICs one for each VLAN, put lots of firewall rules in place to make
> sure it
>> can only contact the external repositories and reject incoming connections
>> then a few cron jobs to keep it synced every day.
> 
> 
> _______________________________________________
> Ale mailing list
> Ale at ale.org
> http://mail.ale.org/mailman/listinfo/ale
> See JOBS, ANNOUNCE and SCHOOLS lists at
> http://mail.ale.org/mailman/listinfo
> 
> 



More information about the Ale mailing list