User Tools

Site Tools


filer:remote

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
filer:remote [2007/08/02 09:49] cangianifiler:remote [2023/10/09 12:28] (current) admin
Line 1: Line 1:
-====== Access your files from Home ======+====== Access your files from Outside EPFL ======
 Here you'll find instructions on how to get to your home directory, or use our computational resources in general from outside the EPFL network. Here you'll find instructions on how to get to your home directory, or use our computational resources in general from outside the EPFL network.
 \\ \\
-Most of the computers at EPFL are protected by a [[wp>Firewall]] that should help preventing unauthorized or malicious users to access our server and data, and to infect MS-Windows machines with viruses. It is nevertheless possible to access our computational resources  by estabilishing a VPN or ssh tunnel. Off-course, you need to have an internet connection =)+Most of the computers at EPFL are protected by a [[wp>Firewall]] that should help keeping out malicious users and viruses (warms). 
 +\\ 
 +The firewall **does not allow to connect to a protected internal server or workstation**. Nevertheless, authorized users can by-pass this limitation by establishing a VPN or ssh tunnel. 
 +\\ 
 +Once the tunnel si estabilished, you can access your files using rsync, scp, or sftp. **No ftp** servers are available on our network.
 \\ \\
 \\ \\
  
-===== Access Servers ===== +===== Digging the tunnel using the official EPFL VPN client ===== 
- +The tunnel can be created using the [[wp>VPN]] client provided by EPFL which is available for official EPFL members only (see  [[http://network.epfl.ch/vpn/|here]] for more details). Once the VPN tunnel is establishedyour computer will appear as being withing the EPFL network and will be able to access most of the services within the school including to on-line journals.
-When your workstation is not within the EPFL network (either directly, or indirectly via some kind of tunnel), you __can't__ connect directly to any internal server+
 \\ \\
-In order to reach a protected server, you must first connect to an Access Server and then, from this server, you can connect to the desired server or workstation.+Some of our services are restricted also to machines that are not within our subnet so, for example, you will not be able to mount your home directory via NFS even if you're using the EPFL VPN client.
 \\ \\
  
-Every lab has its own Access Server:+===== SSH tunnel through our Access Servers ===== 
 +We have few servers that can be reaced from outside the firewall with an ssh client (see below). They can be used as gateways to the internal EPFL network by anyone having a valid account on our cluster. 
 + 
 +Every lab has Access Server that should be used preferably:
  
 ^  LAB  ^  Server  ^ ^  LAB  ^  Server  ^
 | lthi | lth.epfl.ch | | lthi | lth.epfl.ch |
 | lthc | lth.epfl.ch | | lthc | lth.epfl.ch |
-lcm  | lth.epfl.ch | +linx  | lth.epfl.ch | 
-licos licos.epfl.ch | +smils lth.epfl.ch |
-| algo | clusteralgo.epfl.ch | +
-| arni | clusteralgo.epfl.ch | +
-\\+
 \\ \\
 +To connect via ssh to a specific (protected) machine, you need first to connect to the access server, and then from this to your actual destination. 
  
 +Ssh can also be used to create secure tunnels for all other protocols, see [[ssh-remote:|here]] for more details. 
  
-===== Ssh client ===== +==== Ssh client ==== 
-The ssh protocol can be used to connect to our Access Server, and from this connect to all others servers of our network. In order to access the network you have to use an ssh client and your login/password couple.\\+The ssh protocol can be used to connect to our Access Server, and from this connect to all others servers of our network. 
 +\\
 Linux and Os X come with a ssh client out of the box, for MS Windows you can download putty from [[http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html|this]] page. Linux and Os X come with a ssh client out of the box, for MS Windows you can download putty from [[http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html|this]] page.
-The connection made by ssh protocol are encrypted, so nobody can sniff what you are doing. No clear connection (as telnet) to the servers are allowed from outside the LAN.\\+The connection made by ssh protocol are encrypted, so nobody can sniff what you are doing. **No clear-text connections (telnet)** is accepted by our machines.
 \\ \\
-At **[[ssh-remote:|this page]]** you can find all the informations you need for connecting to the network and look at **[[sshkey:|this page]]** for a useful hint+At **[[ssh-remote:|this page]]** you can find all the information you need for connecting to the network and look at **[[sshkey:|this page]]** for a useful hint.
- +
-===== Copy files over the net ===== +
-The use of ssh client permit only to work on the remote server, but if you need to copy some file from or to a remote server, you need to use others programs: +
-  * rsync +
-  * scp +
- +
-No **ftp** servers are disponible on our network. +
- +
- +
- +
- +
-===== Dig a tunnel ===== +
-Because of the firewalls the servers of EPFL network aren't directly accessible from Internet, but using the ssh protocol you can create one or more tunnel so you can connect directly from your local computer to all our server here in Lausanne. Just connect to the Access Server activating the tunnel option and you can login on the others servers of the network. look [[ssh-remote:|here]] for details.+
filer/remote.1186048159.txt.gz · Last modified: 2007/08/02 09:49 by cangiani