1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015 <2016> 2017 2018 2019 2020 2021 2022 2023 2024 2025 | Index | 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 2009 2010 2011 2012 2013 2014 2015 <2016> 2017 2018 2019 2020 2021 2022 2023 2024 2025 |
<== Date ==> | <== Thread ==> |
---|
Subject: | Re: Gateway on machine with two network cards and running many IOCs? |
From: | Isabella Rey <[email protected]> |
To: | "Hartman, Steven M." <[email protected]> |
Cc: | EPICS Tech Talk <[email protected]> |
Date: | Mon, 25 Jan 2016 09:18:23 +0000 |
> On Jan 22, 2016, at 7:15 AM, Isabella Rey <[email protected]> wrote:
>
> In an ideal world, I would like to have read-write access to PVs from any machine within the lab network, but read-only access from the site network.
Hello Isabella—
We implemented this by running the gateway on a non-standard port. The IOCs use the standard CA network ports and local clients connect that way for read/write access. The gateway provides read-only monitoring from the office network and clients there are configured to use the non-standard port. A perimeter firewall prevents the office network clients from reaching the IOCs on the standard ports. The gateway configuration prevents loops.
--
Steven Hartman
[email protected]