Configuring LDT for CIFS shares Mapped to Multiple IP addresses
This feature allows you to apply the same GuardPoint to two IP addresses that point to the same CIFS share. This can be useful because different applications may use different IP addresses for accessing data.
This feature is available only when using LDT AccessOnly nodes.
Network Setup for CIFS shares Mapped to Multiple IP addresses
The following illustration shows how to setup your network. The table below explains the setup in more detail:
In the above sample diagram:
# | Description |
---|---|
1 | LDT nodes are connected to Network 1 |
2 | LDT AccessOnly nodes are connected to Network 2 |
3 | CIFS server is connected to both Network 1 and 2, and have one IP address corresponding to each network |
4 | CIFS server may also be connected to more networks, based on use case and requirement |
5 | CipherTrust Manager can be connected to Network 1, 2 or some other network |
6 | Network 1 and 2 nodes can reach CipherTrust Manager and vice versa |
Creating the Setup
-
Register LDT nodes from Network 1 on CipherTrust Manager and add them to the LDT Communication Group.
-
Create a CIFS\SMB share connection on CipherTrust Manager, using one of the two IP addresses of the CIFS machine, preferably IP 1.
-
Register the LDT AccessOnly nodes from Network 2 to CipherTrust Manager.
-
Create two Client Groups: one for the LDT nodes and one for the LDT AccessOnly nodes
-
Apply GuardPoints in both client groups using the respective network IP addresses.
-
Access the protected CIFS path using the respective IP addresses.