[WLUG] Samba security

Jeff Hanson jhansonxi at gmail.com
Sun Oct 29 14:26:48 EDT 2017


I suggest using network encryption and virtual LANs to isolate
unauthenticated systems.  I've never did it on my last IT job years ago but
was something I looked into.

On my home network I've mostly switched to sshfs with keys.

On Sun, Oct 29, 2017 at 11:13 AM, Jim Irrer <irrer at umich.edu> wrote:

> I'm looking for advice and opinions.  Our department is migrating our
> Linux servers, which are running Samba, to a centranlized server farm.  On
> a previous conference call they said that they had security concerns about
> running Samba.  The call discussed a lot of topics so we did not go into
> detail.
>
> I have another conference scheduled with them and intend to drill into
> this deeper.  So my question is, are there legitimate concerns in this
> regard?  We will only be exposing Samba on UM's hospital network, and it
> seems like a lot of the risk could be mitigated by using firewalls to limit
> access to a small set of machines.  It would also seem that Samba is just
> an implementation of Windows SMB, and if that is already being commonly
> used, then why pick on Samba?
>
> Any input would be appreciated!
>
> Thanks - Jim
>
> --
> Thanks,
>
> - Jim
>
> Jim Irrer     irrer at umich.edu       (734) 647-4409
> University of Michigan Hospital Radiation Oncology
> 519 W. William St.             Ann Arbor, MI 48103-4943
>
> ______________________________________________________
> washlug mailing list    washlug web site
> washlug at washlug.org     www.washlug.org
> http://linux.marcdatabase.com/mailman/listinfo/washlug
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://linux.marcdatabase.com/pipermail/washlug/attachments/20171029/22800132/attachment-0001.html>


More information about the washlug mailing list