[comp.unix.ultrix] care and feeding of Decnet/internet gateway

bcs212@vader.UUCP (Vince Skahan) (07/25/88)

We have a number of TCP/IP nodes around here (including VMS Vaxes) and
are *finally* getting an ultrix node.  I have it set up with decnet,
tcp, and the internet gateway installed and working and have a few
questions:

Picture the following network:

	node A    node B           node C   node D
	|	  |		    |		|
        |         |	            |    	|
     -----------------            ------------------
	   |	(network1-decnet)	|  (network 2 - decnet)
	   |				|
	gateway 1		       gateway 2
           |				|
	----------------------------------------
		(network3 - TCP)

the general idea is that there are 2 networks (1 and 2) linked
by 2 ultrix gateways that have TCP running between them and that 
two networks do not talk TCP at all (decnet only)

I know I can set the ultrix gateways up so that mail can be sent between
all nodes on the 2 decnet networks (although I might have to mess with
the ultrix sendmail.cf files).

Can I have mail from everywhere (to anywhere) work but still selectively
restrict file access and remote logins from a remote network? In other
words, can I allow node A to mail to B,C, or D but only allow users on A
to login to C (prevent "A" users from logging into D).

Can someone out there give me an example of some of the things YOU do
locally? This gateway is great when everything is wide open but I have
the need to be open for mail, somewhat more restrictive for file access
(copy, etc), and rather heavily restrictive for remote logins between
the two networks shown above...

Thanks for any help.

-- 
     Vince Skahan            Boeing Computer Services - Phila.
    (215) 591-4116           ARPA:  bcs212%psev@boeing.com
                             UUCP:  vader!bcs212 
Note: the opinions expressed above are mine and have no connection to Boeing...