IPv6 readyNote: This archive passes through spamassassin. Every mail marked with the subject "*****SPAM*****" has exceed a certain threshold of spam-like behaviour.

Re: [Users] wins and browsing

From: Mogens Valentin (monz_at_danbbs.dk)
Date: Mon Jun 03 2002 - 12:15:45 CEST


Brock Nanson wrote:
>
> Could you elaborate?
>
> Brock
>
> On Mon, 3 Jun 2002, Justin Kreger wrote:
>
> > it can be done with win9x, winnt/2k/xp, samba... maybe some
> > proprietary smb stacks that are not from microsoft.
> >
> > The only way I have seen of doing what you wish is to include a second
> > Samba server on the roadwarrior subnet... not a simple feat if he is
> > connecting on his laptop from his motel room!
> >
> > Samba will allow you to synchronize browse lists across the VPN,
> > however it needs another Samba box to do this. It *might* be possible
> > to do this with NT, but I have not experience with that... someone else
> > may offer comment.

As I understand it, NT/W2K wins will not sync across a tunnel.

> > It does work well with the Samba on both ends... one doing WINS, both
> > doing browse master stuff and syncronizing.

I've been batteling the same issue for a while now, and need a few
things set straight.

In my setup, I have a Samba winsmaster on a central firewall-vpngw.
I may see a possible problem with this, compared to having the Samba
winsmaster located on a separate server behind the vpngw, but I'm not
sure; I may be imagineing things here..

On the remote ends (these being roadwarriers or regular networks), I
have another Samba, being a wins master for that particular net, and
sync'ing to the central winsmaster on the firewall-vpngw.
Both ends need to do remote browse sync and remote announce, IIUC.

If this is the scenario to use, I fail to make it work. Possibly du to
misconfigured firewalling.

Oh, the Samba's do initiate browse sync, but replies 'connection timed
out', and I haven't been able to pinpoint where it goes wrong.

My setup seems to differ from what's outlined above; i.e., I have
winsmasters at both ends, while it seems you're suggesting one central
winsmaster, having the remote ends connecting/sync'ing to the central
one.

Another issue here: Is wins nessesary at all for doing domain logon,
mapping shares, and browsing networks?
Being able to do nameserver lookups across a tunnel should suffice,
according to a discussion I had 'elsewhere'.
Wins seems pretty messy working with under these circumstances..

> > On Sun, 2 Jun 2002, Sean Loch wrote:
> >
> > > Hi all,
> > >
> > > I have my vpn all setup pretty much the way I want it
> > > now. Basically, it is Windows road warriors
> > > connecting to my Freeswan server, which in turn
> > > services a subnet that has other Windows and Linux
> > > boxes on it. I have a Samba server on one of the
> > > Linux boxes that also has Wins support enabled, and
> > > the road warriors point to this machine as their Wins
> > > server. I can access all machines behind the VPN from
> > > the road warriors by their NetBios names. However,
> > > when I goto the Network neightborbood on the road
> > > warrior machines, the shares do not automatically show
> > > up in the browse list. Is there something more I need
> > > configured for Wins on the Samba server to get this to
> > > work, or, do I have other configuration problems?
> > >
> > > Thanks in advance.
> > >
> > > Sean
>
> _______________________________________________
> Users mailing list
> Users_at_lists.freeswan.org
> http://lists.freeswan.org/mailman/listinfo/users

-- 
Kind regards / venlig hilsen,
Mogens Valentin, Mr Dev

IT Networking, Security, Server Setup http://www.mrdev.com mrdev_at_danbbs.dk Phone +45 32 525 878 Cell 51 227 668 _______________________________________________ Users mailing list Users_at_lists.freeswan.org http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:20:10 CEST