Specifications
Table Of Contents
- About This Document
- Understanding Networking and IP Addressing
- Introduction to Networking
- Networking using IP
- Niagara Considerations
- Additional Information
- Configuration and Troubleshooting Tools
- Connecting on a LAN
- Connecting with Direct Dial
- Connecting to an ISP
- Using Security Technologies
- Configuration Files Used for Communication
- Glossary
- Index

Niagara Release 2.3
Revised: May 22, 2002 Niagara Networking & Connectivity Guide
Chapter 6 Using Security Technologies
Using a Firewall or Proxy Device
6–6
Figure 6-2 Types of Niagara communication blocked with an application proxy or stateful inspection firewall.
The following communication functions between hosts separated by a firewall
will work, even when the firewall uses application proxy and stateful
inspection:
–
browser to station
–
Admin Tool to host
–
polled archiving
–
time synchronization
For a description of any of these communication functions, see the
“Communication between Niagara Hosts” section on page 1-35.
If you are implementing a firewall in lieu of using one already in place, a good
security practice is to grant the most limited permissions you can on the firewall,
while still following the guidelines for communication listed above.
JDE engineering
A
l
a
r
m
c
o
n
s
o
l
e
o
f
r
e
m
o
t
e
s
t
a
t
i
o
n
a
l
a
r
m
s
Web Supervisor
Engineering PC
Any
Niagara
Host
Any
Niagara
Host
Any
Niagara
Host
Any
Niagara
Host
I
n
t
e
r
s
t
a
t
i
o
n
l
i
n
k
t
o
r
e
m
o
t
e
h
o
s
t
I
n
t
e
r
s
t
a
t
i
o
n
l
i
n
k
t
o
r
e
m
o
t
e
h
o
s
t
Firewalls using
application proxy or stateful inspection
blocking communication between Niagara hosts
P
u
s
h
e
d
a
r
c
h
i
v
i
n
g
Any
Niagara
Host
Any
Niagara
Host with
database
services
M
o
n
i
t
o
r
i
n
g
o
r
r
e
m
o
t
e
s
t
a
t
i
o
n
Web Supervisor
Any
Niagara
Host