Solved

Lion server private vs. internet host name

Posted on 2012-03-25
4
999 Views
Last Modified: 2012-04-04
im setting up a lion server as a file server, mail server, ical, address book, and wiki server.  I'll also be running as an open directory master, serving a mix of approx 15 desktops/laptops.

am i better off setting it with a private network name, such as server.mycompany.private, or with an internet routable name, such as server.mycompany.com?

Are there security concerns for its host name as internet routable?

ideally i'd like the laptops to access ical / address book / wiki / mail outside of the local network, not sure if the host name matters for that, and also not sure if the routable name represents a significant security threat.

thank you
0
Comment
Question by:kaplancomputers
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 78

Expert Comment

by:arnold
ID: 37764016
You should use internal and then use the mail server configuration to specify the external domain that it will be using and masquerade if you want it to reflect the external name in the headers.
As long as your external domain points to your public IP and your outside router is configured to pass the appropriate traffic to your internal server and you internal server's firewall if any is configured to allow that traffic and the user has  the correct username/password to provide you should be set.
0
 
LVL 13

Accepted Solution

by:
maximus5328 earned 500 total points
ID: 37768952
There is no security concerns in giving the server a .com name. However, you shouldn't use server.mycompany.com for different reason. After you set up DNS on the server - and you should in order for Open Directory to work properly - the server will become authoritative for mycompany.com zone. This can potentially become a problem (ex. the stations on your network will not be able to access mycompany.com website).
That said, you can go with either server.mycompany.private or something like server.office.mycompany.com - in either case you will configure the gateway firewall to allow access to server from remote clients.
0
 

Author Comment

by:kaplancomputers
ID: 37769082
Maximus, thx very much for your comments. Does using a .private address complicate remote users that want to use the iCal or address book services from the lion server?

Can they still use those services outside of the local network with a .private?
0
 
LVL 13

Expert Comment

by:maximus5328
ID: 37771828
I think, with .private you will be able to connect to the server from outside using port forwarding on the gateway. You will definitely be able to connect using VPN.
0

Featured Post

Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Information security is a multi-billion dollar industry. Just as lucrative is the black market industry which trades stolen identities, credit card numbers and software exploits all over the world. Nothing is hack-proof. The best one can do is make …
Short answer to this question: there is no effective WiFi manager in iOS devices as seen in Windows WiFi or Macbook OSx WiFi management, but this article will try and provide some amicable solutions to better suite your needs.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question