Jump to content

Recommended Posts

Posted (edited)

Hi All :-)

 

Just a quick query to sanity check that I'm right before plodding ahead.

I want to secure our QNAP NAS Box onsite with an SSL Cert.

 

Now, at the moment I only access them by entering [http:// devicename : port] into a web address and that works fine.

However, I want to apply our wildcard cert (which applies to schoolname.org.uk, for example) BUT I only want this NAS device accessible internally.

 

My train of thought was to create a Forward Lookup DNS record so that NASBox.schoolname.org.uk) points to the IP Address of the NAS Box and then apply the SSL Cert in the web config of the NAS

For it to be accessible externally I'd have thought a firewall rule would need to be in place, which naturally I wouldn't create in this instance.

 

Is there anything I'm missing here or is it simple as that?

 

Thanks,

F_admin

Edited by F_admin
Posted

We Always certify internal services where we can.

 

It should be as simple as what you have said

 

We use .local so we create internal dns zones on our internal dns, for example we did it for windows admin centre eg admincentre.county.sch.uk, which is only resolvable when connected to our network

  • Thanks 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...