From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from lists.gentoo.org ([140.105.134.102] helo=robin.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1IW9VK-00077g-Lo for garchives@archives.gentoo.org; Fri, 14 Sep 2007 11:38:35 +0000 Received: from robin.gentoo.org (localhost [127.0.0.1]) by robin.gentoo.org (8.14.0/8.14.0) with SMTP id l8EBTMwK005809; Fri, 14 Sep 2007 11:29:22 GMT Received: from fk-out-0910.google.com (fk-out-0910.google.com [209.85.128.187]) by robin.gentoo.org (8.14.0/8.14.0) with ESMTP id l8EBTMnf005801 for ; Fri, 14 Sep 2007 11:29:22 GMT Received: by fk-out-0910.google.com with SMTP id 19so1402138fkr for ; Fri, 14 Sep 2007 04:29:22 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; bh=rPlFx4BBR50NqCKAQTvy+mG8/k6OzPt6mzoMLaJv4nI=; b=t+5RdfBBrMuZI4IX7TROkA4dOXlrjKau30AfK1qm51gIcnzRVwsRtqnYBkKuWiM7+dpMAmBsHhQx2gRXb5QQhlC1QNnF6quKIpaoBXh8C1VAQGJJo62PMuPsHthA5xsCghUblxXqJK5StCRb8pinBlNVxkuqwpfR0KUukAU0CAg= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=oNNpxSLh5OgF4wcwbRDBpIVyjz+oxU99a3B826OTLHQSt1QdbBwcqSZ+4lAvWrjCOvNXs9spqbVWNFKVi6n0yNpXiX+XonDSwgZ7jSWSLMeTjiWQXbuAKHxxcqXaaQhWWmm1aZoJDnKtRgc/2i3QJ8pH3N5vFo+pABzhxSVZPL0= Received: by 10.82.100.1 with SMTP id x1mr2355617bub.1189769361718; Fri, 14 Sep 2007 04:29:21 -0700 (PDT) Received: by 10.82.141.10 with HTTP; Fri, 14 Sep 2007 04:29:21 -0700 (PDT) Message-ID: <7a329d910709140429u2eda1c7taa46b691f940ee62@mail.gmail.com> Date: Fri, 14 Sep 2007 07:29:21 -0400 From: "Wil Reichert" To: gentoo-amd64@lists.gentoo.org Subject: Re: [gentoo-amd64] Local network backup In-Reply-To: <200709141022.26291.prh@gotadsl.co.uk> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-amd64@gentoo.org Reply-to: gentoo-amd64@lists.gentoo.org MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline References: <200709141022.26291.prh@gotadsl.co.uk> X-Archives-Salt: 24fb2b35-fb20-45b1-b948-c36ffc0b1ff2 X-Archives-Hash: d937ad3393a9c34e26f3885e0cd4ecf0 I'm assuming since you're asking this question your firewall is locked down pretty tight. That said, backing up your personal data to it seems like a not very good idea. Were you planning on encrypting it or something? Anyway... Who uses your internal network seems to be the variable here. Is this at work or home? Is there a wireless router thrown in there somewhere? Wil On 9/14/07, Peter Humphrey wrote: > Here's today's problem. > > I have a firewall-cum-gateway box between my tiny LAN and the Internet. The > gateway runs constantly, while the internal boxes run when needed (they're my > laptop and workstation). I want to use some space on the gateway to store > backups of the other boxes, and I'd like the backup to run unattended at a > time when the others are likely to be running. This seems not to be possible > without security risks. > > I've looked through all the Gentoo app-backup packages and found very few that > are suitable for use out of the box. Ssh figures in them all, which is a good > thing I suppose - except that I can't find a way to have ssh or scp run > unattended. > > Take rsnapshot, for instance. This looks like just what I need: automation via > cron, history extending from hours to months, easy restoration and so on. It > uses rsync, which can run either natively, which I'm not sure is prudent over > the LAN, or over ssh. So in trying to set rsnapshot up to use ssh, and > following the admirable guide by Daniel Robbins, I find that in order to > avoid having to give a password every time a snapshot is taken, I have to > remain logged in as root. This is not a good idea on a firewall box. > > So I seem to have a choice: (i) run my backups manually, (ii) run them without > ssh. You see my dilemma. > > -- > Rgds > Peter. > Linux Counter 5290, Aug 93 > -- > gentoo-amd64@gentoo.org mailing list > > -- gentoo-amd64@gentoo.org mailing list