[Mulgara-dev] [Topaz-dev] connecting to mulgara on remote server requiresallowing connections to a random high port

Russell Uman ruman at plos.org
Tue Apr 22 21:03:39 UTC 2008


> 
>     1. iptables (or a proxy) is able to sniff the randomly 
> assigned port in the
>        return data from the RMI registry and opens that to 
> the world. I did a
>        google search and did not find anything here. Maybe 
> others on the list
>        know of a better solution.

the way this is handled, in linux, for FTP (which has a similar issue)
is with an ip_conntrack kernel module. not sure how easy/hard it is to
write one of these for a specific application...


--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
This email is confidential to the intended recipient. If you have received it in error, please notify the sender and delete it from your system. Any unauthorized use, disclosure or copying is not permitted. The views or opinions presented are solely those of the sender and do not necessarily represent those of Public Library of Science unless otherwise specifically stated. Please note that neither Public Library of Science nor any of its agents accept any responsibility for any viruses that may be contained in this e-mail or its attachments and it is your responsibility to scan the e-mail and attachments (if any).




More information about the Mulgara-dev mailing list