[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sheflug] Re: Building kernel on one machine, using on another.



>>>>> "Barrie" == Barrie Bremner <TheEnglishman [at] ecosse.net> writes:

    Barrie>  Still...if not this, what should I do with noodles?

A firewall is a reasonable thing to do with it (him? her?)  Among
other things, noodles ... how to put this delicately? ... would be a
much smaller loss if your firewall did get compromised.  And if you're
not running any servers that can do an arbitrary exec (that include
ftpd and httpd, as well as rshd and telnetd) except sshd on it,
getting useful access to inside would be very difficult.  While at the
moment, once you get to flux you ARE inside.  More safety at not much
cost.

Or you could just call it a souped-up "router" or "gateway".  There
are all kinds of possibilities.

(1) Run IPv6 behind the gateway.  Could make you _very_ salable in the
net admin market in a year or two.  I doubt there are competent IPv6
hackers with time on their hands to answer FAQs on Sheflug, tho.
Could be wrong....

(2) Run a VPN behind the router (and eventually through it).  You've
already really got that, you just need to learn to create tunnels to
extend it to anywhere on the Internet.  Also a sales point - today! -
in the net admin market.

(3) Run an open private net by running a real DNS on the router
(instead of just a repeater for your ISP's DNS).  I've not tried this
you understand, but in theory you should be able to create a new root
domain accessible to people who know where your DNS is.  (Not
recommended; the tools for subverting DNSes are well-developed, and
this would provide direct access to your internal net without the
masq if somebody should happen on it.)

(4) Same as (3), but as a VPN.  A lot safer.  Then you'd only have to
worry about the friends you let join your VPN stabbing you in the
back. :) :)

(5) A really tiny Beowulf cluster.

(6) (shameful) X terminal.

(7) Various kinds of proxies.

(8) Noodles is a bit small to act as a Coda server, but a little fun
with NFS would be possible.

Endless possibilities!

-- 
University of Tsukuba                Tennodai 1-1-1 Tsukuba 305-8573 JAPAN
Institute of Policy and Planning Sciences       Tel/fax: +81 (298) 53-5091
_________________  _________________  _________________  _________________
What are those straight lines for?  "XEmacs rules."
---------------------------------------------------------------------
Sheffield Linux User's Group - http://www.sheflug.co.uk
To unsubscribe from this list send mail to
- <sheflug-request [at] vuw.ac.nz> - with the word 
 "unsubscribe" in the body of the message. 

  GNU the choice of a complete generation.