Jump to content
View in the app

A better way to browse. Learn more.

FMForums.com

A full-screen app on your home screen with push notifications, badges and more.

To install this app on iOS and iPadOS
  1. Tap the Share icon in Safari
  2. Scroll the menu and tap Add to Home Screen.
  3. Tap Add in the top-right corner.
To install this app on Android
  1. Tap the 3-dot menu (⋮) in the top-right corner of the browser.
  2. Tap Add to Home screen or Install app.
  3. Confirm by tapping Install.

Filemaker Server 11 vpn vs SSL on two locations

Featured Replies

Hello everyone,

at the moment I cannot find out how to make my scenario happen, please help:

We have a WIN 2003 Server with Filemaker Server 11 running 6 databases, that server has its own static public IP, we have a 4Mbit SDSL line (up and downstream is the same)

Clients connect to that server and use our databases from their Macbooks, all Snow Leopards with Filemaker 11 installed.

Two road warriors connect via PPTP VPN from time to time and the access the server as well, but it is SLOW to say the least.

Good to look up some info but not really to work.

I think I know that the VPN is the bottleneck. Eg at home I have a cable linkup that is much faster up and down as the 4Mbit, still it is DUH.

Now we have a second, small office and I would like the people there to work on our database as well, remotely.

What would be the best practise (and fastest connection) for the clients to connect to our server?

I read some stuff about SSL encryption but I am afraid of a security hole.

In my best case I would have a fast connection of the clients, using only their filemaker clients to connect to our database, with strong passwords,

and (this is possible because it is just 2 people) mac addresses, maybe?

Please advise and thank you first of all.

ole

Hello everyone,

at the moment I cannot find out how to make my scenario happen, please help:

We have a WIN 2003 Server with Filemaker Server 11 running 6 databases, that server has its own static public IP, we have a 4Mbit SDSL line (up and downstream is the same)

Clients connect to that server and use our databases from their Macbooks, all Snow Leopards with Filemaker 11 installed.

Two road warriors connect via PPTP VPN from time to time and the access the server as well, but it is SLOW to say the least.

Good to look up some info but not really to work.

I think I know that the VPN is the bottleneck. Eg at home I have a cable linkup that is much faster up and down as the 4Mbit, still it is DUH.

Now we have a second, small office and I would like the people there to work on our database as well, remotely.

What would be the best practise (and fastest connection) for the clients to connect to our server?

I read some stuff about SSL encryption but I am afraid of a security hole.

In my best case I would have a fast connection of the clients, using only their filemaker clients to connect to our database, with strong passwords,

and (this is possible because it is just 2 people) mac addresses, maybe?

Please advise and thank you first of all.

ole

You do not need the VPN for encryption purposes for FileMaker data. And as you've discovered, it can be a huge performance bottleneck. Enable the encryption option in the Admin Console for FileMaker Server. That provides encryption of data in transit for all users, both inside the LAN and outside as well.

Steven

  • Author

You do not need the VPN for encryption purposes for FileMaker data. And as you've discovered, it can be a huge performance bottleneck. Enable the encryption option in the Admin Console for FileMaker Server. That provides encryption of data in transit for all users, both inside the LAN and outside as well.

Steven

Thank you, Steven.

In that case, I would open port 5003 for TCP incoming and outgoing on the firewall of my Win 2003 Server running Filemaker Server? Would that not

open doors for hackers trying to get into my Windows Server (since the port is open?) ?

I guess I would have to set access rights on the firewall rule for 5003 only for certain MAC adresses, correct?

I am a little confused here.

Thanks again.

ole

Thank you, Steven.

In that case, I would open port 5003 for TCP incoming and outgoing on the firewall of my Win 2003 Server running Filemaker Server? Would that not

open doors for hackers trying to get into my Windows Server (since the port is open?) ?

I guess I would have to set access rights on the firewall rule for 5003 only for certain MAC adresses, correct?

I am a little confused here.

Thanks again.

ole

Open Port 5003 on the network firewall and forward packets to the NAT address of the FIleMaker Server machine. Any open port is a potential attack vector; you must balance risks of attacks against needed services.

Steven

  • Author

Open Port 5003 on the network firewall and forward packets to the NAT address of the FIleMaker Server machine. Any open port is a potential attack vector; you must balance risks of attacks against needed services.

Steven

Thank you Steven, this helped!

Create an account or sign in to comment

Important Information

By using this site, you agree to our Terms of Use.

Configure browser push notifications

Chrome (Android)
  1. Tap the lock icon next to the address bar.
  2. Tap Permissions → Notifications.
  3. Adjust your preference.
Chrome (Desktop)
  1. Click the padlock icon in the address bar.
  2. Select Site settings.
  3. Find Notifications and adjust your preference.