發信人:ryolee@m2.dj.net.tw (我是大毛ㄛ) 日期:Sun, 16 Feb 1997 04:28:55 GMT 標題:Re: IPX filtering 信群:tw.bbs.comp.novell 看板: 代號:<33088868.4878641@news.dj.net.tw> 組織:DJ Net >How to set a IPX filter at 2-LAN port router: >The filter will filter the IPX broadcast such that the PC at one side >will not attach to the Novell server at the other side, but can login >the Novell server at the other side. These two statements seem to be conflict each other! You want to filter the broadcast,the SAP from the Netware server, but you want these two LANs' workstation to login to the other side's Netware server? How the workstation know the other side's Netware server exists after SAP filterred? >Is it needed to filter the "SAP Get Nearest Server Request" packets? To setup these two LANs' servers in seperate NDS trees, or setup all servers in single NDS tree but setup the file servers' access rights to limit the invalid user to login. If the end user not very knowledgable, simplify setup the 'Preferred server' may reach the same effect. If not,some educations may be needed for all users to know they shouldn't TRY to login another side's servers because of security. The best way is to filter the SAP from two LANs. The security is best! >What is the required packet format? It seems doesn't matter. 802.2 or 802.3 is OK! BEST REGARDS, RYO http://www.dj.net.tw/~ryolee *** OS/2 T4.0 not found! System halt... .