SoftNAS™ Reference Guide

 

Firewall

By default, the Linux "iptables firewall" is disabled.
 
You can enable the firewall using the following dialog, or create appropriate rules for your particular deployment.
 
 
Typically, storage servers are deployed within an internal, secure network (often on their own VLAN on a protected network segment, perhaps even with dedicated switches).  While SoftNAS can be deployed in this, or any other appropriate configuration, it's most common that some other firewall(s) protect the perimeter of the enterprise (from the Internet) and the data center (from the intranet).  Use appropriate judgment as to whether or not to employ the Linux firewall, in addition to other security measures in the environment.
 
If you enable the firewall, be sure to open up the appropriate set of ports for SSH, HTTP. HTTPS, NFS/bind, iSCSI, CIFS, etc.