Samba with SSL

Andrew Bartlett abartlet at pcug.org.au
Fri Oct 12 17:39:03 GMT 2001


Bruce Ferrell wrote:
> 
> Hi,
> 
> I think I may be in way over my head with one.
> 
> I've been asked to lookint VPN type connectivity and SSL-enabled samba
> looks like
> a way to do this, but all of the documents for SSL-enabled samba refer
> to SSLEay
> (which is no longer maintained). Can openssl be used instead?

I would recommend using a seperate VPN product, and run samba over that
connection, rather than assuming that adding SSL maks samba suitable for
a non-LAN environment.  Unfortunetly this protocol has too many holes in
it for serious deployment like this.  :-(.

Personally, I use a PPP over SSH VPN, using pppd's 'pty <script>' option
to forward it over a key-authorized SSH connection to the far end, where
I again run 'pppd'. 

Hope this helps,
Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at pcug.org.au
Samba Team member, Build Farm maintainer        abartlet at samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
http://samba.org     http://build.samba.org     http://hawkerc.net




More information about the samba mailing list