F_admin Posted March 5, 2021 Posted March 5, 2021 (edited) Hi All :-) Just a quick query to sanity check that I'm right before plodding ahead. I want to secure our QNAP NAS Box onsite with an SSL Cert. Now, at the moment I only access them by entering [http:// devicename : port] into a web address and that works fine. However, I want to apply our wildcard cert (which applies to schoolname.org.uk, for example) BUT I only want this NAS device accessible internally. My train of thought was to create a Forward Lookup DNS record so that NASBox.schoolname.org.uk) points to the IP Address of the NAS Box and then apply the SSL Cert in the web config of the NAS For it to be accessible externally I'd have thought a firewall rule would need to be in place, which naturally I wouldn't create in this instance. Is there anything I'm missing here or is it simple as that? Thanks, F_admin Edited March 5, 2021 by F_admin
Jcx500 Posted March 5, 2021 Posted March 5, 2021 We Always certify internal services where we can. It should be as simple as what you have said We use .local so we create internal dns zones on our internal dns, for example we did it for windows admin centre eg admincentre.county.sch.uk, which is only resolvable when connected to our network 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now