On 02/10/2021 14.12, Ralf Prengel wrote:
Hallo, you won t configure nfs to be reachable from internet. For internal use protected behind a central firewall a local second firewall is oversized.
Depends :-) The firewall can be configured in "internal" mode, which is less strict that "external". Not mode, but interface. Or it can be set to external because you don't trust the local network that much. I don't. Specially with a home router supplied by the ISP and which I do not fully control. Or because in the LAN there are machines or users that can not be fully trusted. Imagine you are in a business, and one of the machines gets successfully attacked with a trojan and then that machine starts attacking every other machine in the network. Or imagine you are at home, and your new ceiling lamp connects to the internet of things server outside, gets compromised, and then a cracker successfully enters your LAN through it and steals your collection of relaxing videos of lions hunting in the savannah :-) P.S: Your mail did not got posted to the list, only your copy to me. -- Cheers / Saludos, Carlos E. R. (from oS Leap 15.2 x86_64 (Minas Tirith))