Great Circle Associates Firewalls
(December 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Oracle SQL/Net
From: wyer @ TeleCheck . com
Date: Fri, 06 Dec 96 08:25:30 -0600
To: firewalls @ greatcircle . com

Hello,

We've recently acquired a company which is accessing an Oracle database on a
remote network via TCP/IP.  Due to addressing conflicts, we have installed
back-to-back PIX boxes to do two-way address translation between both 
networks.
Unfortunately, we've discovered that Oracle's SQL/Net product passes IP
addresses back and forth during the handshaking phase of their ODBC drivers.
This makes it impossible to successfully do address translation, since the
addresses which are being passed are the native addresses, rather than the
translated addresses.

I spoke to Oracle about this to try to find out if it were possible to 
convince
SQL/Net to pass hostnames rather than IP addresses and got some bonehead that
said that SQL/Net has nothing to do with the data in the packet...  TCP/IP is
putting strings like "HOST=123.111.232.12" into the packet.  Yeah, right.

In any case, is there some sort of proxy agent which will handle Oracle's 
SQL/Net / ODBC stuff in a graceful fashion between two conflicting IP networks
somewhat like the Web proxy agent?

Brett Wyer
+----------------------------------------------------------------------------+
| Brett Wyer                      |  The difference between the men and the  |
| Manager, Systems Support        |     boys...                              |
| TeleCheck International, Inc.   |  '89 Corvette - Black/Grey Leather       |
| (713) 439-6474                  |  '95 CBR600F3 - Black/Purple/Yellow      |
| e-mail: wyer @
 telecheck .
 com      |  "I was going _how_ fast, Officer?!?"    |
+---------------------------------+------------------------------------------+
| Opinions are my own and don't reflect the opinion of TeleCheck.            |
+----------------------------------------------------------------------------+




Follow-Ups:
Indexed By Date Previous: Re: Cisco's PIX Firewall
From: jeromie @ garrison . com@scet . org . uk @ scet . org . uk (jeromie @ garrison . com@scet.org.uk)
Next: Re: Proxy & illegal IP numbers
From: Paul Ferguson <pferguso @ cisco . com>
Indexed By Thread Previous: None
From: herve . h . t . templereau @ thomcom . thomson . fr
Next: Re: Oracle SQL/Net
From: Les Carleton <les @ tracker . demon . co . uk>

Google
 
Search Internet Search www.greatcircle.com