jpadie
10-09-2008, 03:19 PM
Hi
I have pf installed on two macs on remote subnets.
the topography is like this
machine 1:
PUBLIC IP->NAT ROUTER (10.8.2.x)->CLIENT
machine 2:
PUBLIC IP->NAT ROUTER (192.168.2.x)->NAT ROUTER(10.8.3.x)->CLIENT
machine 2 is in an office inside a business centre - hence the need for segregated subnets. The office cannot deliver a public IP to the second router.
I cannot get the machines to connect to each other over the internet. I had anticipated that pf would intermediate a peer-to-peer connection that would solve this problem: much the same way that skype/foldershare does (both of which work without a problem).
the machines do connect if i created a bridged connection via OPENVPN from a client to right-hand remote router.
I have relayed connections switched on for both machines. Tunneled connections are set to Direct Connections on both machines.
So my questions are:
1. should PF connect to 'friends' (mirrored drives) automatically over the internet, without the need for manual intervention?
2. sometimes one client can see that the other is online. but refuses to connect. is this normal behaviour? I had anticipated that clients would remain connected if they could see each other.
3. both machines have the ports set to automatic. how can i tell which port PF is actively trying to use? on machine 2 i have evidence that upnp works to configure both routers (as skype/foldershare/vuze work).
4. is there any way to configure a remote machine through a centralised web interface (like foldershare)?
5. when i look at the debug trace, I see connection attempts made by completely random nodes. like someone's VAIOLAPTOP. this concerns me greatly from a security perspective. Why is this occurring and how can I make myself comfortable that these random nodes are not attaching and are not receiving files from me?
... and slightly off topic ...
6. is there a way to configure PF to 'run as a service' on a mac? so the sync will work whoever is logged in?
7. is there a way to configure PF to live in the menu bar or as a widget/etc rather than having it in the Dock?
thanks in advance,
Justin
I have pf installed on two macs on remote subnets.
the topography is like this
machine 1:
PUBLIC IP->NAT ROUTER (10.8.2.x)->CLIENT
machine 2:
PUBLIC IP->NAT ROUTER (192.168.2.x)->NAT ROUTER(10.8.3.x)->CLIENT
machine 2 is in an office inside a business centre - hence the need for segregated subnets. The office cannot deliver a public IP to the second router.
I cannot get the machines to connect to each other over the internet. I had anticipated that pf would intermediate a peer-to-peer connection that would solve this problem: much the same way that skype/foldershare does (both of which work without a problem).
the machines do connect if i created a bridged connection via OPENVPN from a client to right-hand remote router.
I have relayed connections switched on for both machines. Tunneled connections are set to Direct Connections on both machines.
So my questions are:
1. should PF connect to 'friends' (mirrored drives) automatically over the internet, without the need for manual intervention?
2. sometimes one client can see that the other is online. but refuses to connect. is this normal behaviour? I had anticipated that clients would remain connected if they could see each other.
3. both machines have the ports set to automatic. how can i tell which port PF is actively trying to use? on machine 2 i have evidence that upnp works to configure both routers (as skype/foldershare/vuze work).
4. is there any way to configure a remote machine through a centralised web interface (like foldershare)?
5. when i look at the debug trace, I see connection attempts made by completely random nodes. like someone's VAIOLAPTOP. this concerns me greatly from a security perspective. Why is this occurring and how can I make myself comfortable that these random nodes are not attaching and are not receiving files from me?
... and slightly off topic ...
6. is there a way to configure PF to 'run as a service' on a mac? so the sync will work whoever is logged in?
7. is there a way to configure PF to live in the menu bar or as a widget/etc rather than having it in the Dock?
thanks in advance,
Justin