Discussions
Categories
Groups
Community Home
Categories
INTERNAL ENABLEMENT
POPULAR
PUBLIC CLOUD
PRIVATE CLOUD
Quick Links
MY LINKS
HELPFUL TIPS
Back to website
Home
Web CMS (TeamSite)
DMZ Environment
abhishek_gupta
Hi,
Does open deploy deploy content thru a firewall etc. The customer has a DMZ environment. DMZ is something that is secured behind a firewall. So can OD work in deploying content thru a firewall etc..??
Thanks,
Abhi
Find more posts tagged with
Comments
sunil_j
OpenDeploy can deploy across a firewall. Just ask the customer to Open the Port 20014 on the firewall, so that OpenDeploy can deploy successfully.
Here are some points for your reference :
Performing Deployment Through a Firewall
If an OpenDeploy host is deploying content through a firewall, you must configure your OpenDeploy environment in the following manner:
• The port number you assigned the OpenDeploy host (by default port 20014 ) must be open on the firewall.
• The nodes configuration file (by default odnodes.xml ) on the source host must contain the target host’s IP address.
• The deployment configuration file must contain the firewall’s IP address as the localNode element’s host attribute value.
• The base server or receiver configuration file of the target host (by default odbase.xml or odrcvr.xml ) must contain the target host’s IP address as the localNode element’s host attribute value.
• The base server or receiver configuration file of the target host must also include the firewall’s IP address as an allowed host. Within the allowedHost element, you must assign the firewall’s IP address as the node element’s host attribute value.
Sunil
Interwoven TeamSite Consultant
Migrateduser
Info about deploying through firewalls in OD 5.6 Inst & Ref Guide:
p. 89, "Deploying Through a Firewall"
p. 49, "Configuring RMI Ports for Administration Through a Firewall"
Todd Scallan
Group Product Manager
Interwoven
t: 408-530-7167
e:
tscallan@interwoven.com
skip11
I don't know what firewall you are using, but we deploy through
firewalls and our config does not contain ANY firewall ip's. It's
all set up with interfaces on the sun boxen, and of course, routing.
Skip
Adam Stoller
My understanding is that many firewalls do NAT (Network Address Translation) and as such, the connection from the Base Server to the Receiver through the firewall, will appear (from a TCP/IP perspective) as if the communications originated from the firewall's IP address and not the Base Server's IP address.
Some firewalls apparently do *not* do NAT (or can be configured not to do so?) - and in those cases, the BaseServer's identity remains consistant through the firewall and nothing special needs to be done to the configuration files.
--fish
(Interwoven Senior Technical Consultant)