<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: NX rather than VNC for EC2 Desktop</title>
	<atom:link href="http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/</link>
	<description>A country datasmith.</description>
	<lastBuildDate>Sat, 10 Jul 2010 14:04:14 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: gobansaor</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4648</link>
		<dc:creator>gobansaor</dc:creator>
		<pubDate>Wed, 09 Jul 2008 15:09:49 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4648</guid>
		<description>@Eric

Sorry about the bad links and for not realising that Akismet had relegated your comment to spam!!  

I&#039;ve updated the links but the http://www.alestic.com/ site appears to be down at present.

Thanks for the AMIs, impressive stuff!

Tom</description>
		<content:encoded><![CDATA[<p>@Eric</p>
<p>Sorry about the bad links and for not realising that Akismet had relegated your comment to spam!!  </p>
<p>I&#8217;ve updated the links but the <a href="http://www.alestic.com/" rel="nofollow">http://www.alestic.com/</a> site appears to be down at present.</p>
<p>Thanks for the AMIs, impressive stuff!</p>
<p>Tom</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gobansaor</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4617</link>
		<dc:creator>gobansaor</dc:creator>
		<pubDate>Fri, 13 Jun 2008 15:31:39 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4617</guid>
		<description>And here&#039;s how to install it under Linux ...

http://logmeinwiki.com/wiki/Hamachi:Install_on_Linux</description>
		<content:encoded><![CDATA[<p>And here&#8217;s how to install it under Linux &#8230;</p>
<p><a href="http://logmeinwiki.com/wiki/Hamachi:Install_on_Linux" rel="nofollow">http://logmeinwiki.com/wiki/Hamachi:Install_on_Linux</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sean</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4616</link>
		<dc:creator>Sean</dc:creator>
		<pubDate>Fri, 13 Jun 2008 15:26:15 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4616</guid>
		<description>Got it. Thanks again.</description>
		<content:encoded><![CDATA[<p>Got it. Thanks again.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gobansaor</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4615</link>
		<dc:creator>gobansaor</dc:creator>
		<pubDate>Fri, 13 Jun 2008 15:09:59 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4615</guid>
		<description>Sean 
 
try https://secure.logmein.com/products/hamachi/vpn.asp

Tom</description>
		<content:encoded><![CDATA[<p>Sean </p>
<p>try <a href="https://secure.logmein.com/products/hamachi/vpn.asp" rel="nofollow">https://secure.logmein.com/products/hamachi/vpn.asp</a></p>
<p>Tom</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sean</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4614</link>
		<dc:creator>Sean</dc:creator>
		<pubDate>Fri, 13 Jun 2008 14:50:10 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4614</guid>
		<description>Tom, 

Your Hamachi link above does not go anywhere (I tried it several times). 

And it seems Hamachi is part of LogMeIn and they have made is difficult to find this freeware. It also mentions that it requires a mediation server to establish connection. Is this the same Hamachi you are using? 
https://secure.logmein.com/products/hamachi/howitworks.asp

I also found this on SourceForge 
http://hamachi-gui.sourceforge.net/

At your convenience, please post your source for Hamach. 
Thanks!</description>
		<content:encoded><![CDATA[<p>Tom, </p>
<p>Your Hamachi link above does not go anywhere (I tried it several times). </p>
<p>And it seems Hamachi is part of LogMeIn and they have made is difficult to find this freeware. It also mentions that it requires a mediation server to establish connection. Is this the same Hamachi you are using?<br />
<a href="https://secure.logmein.com/products/hamachi/howitworks.asp" rel="nofollow">https://secure.logmein.com/products/hamachi/howitworks.asp</a></p>
<p>I also found this on SourceForge<br />
<a href="http://hamachi-gui.sourceforge.net/" rel="nofollow">http://hamachi-gui.sourceforge.net/</a></p>
<p>At your convenience, please post your source for Hamach.<br />
Thanks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sean</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4613</link>
		<dc:creator>Sean</dc:creator>
		<pubDate>Fri, 13 Jun 2008 14:32:22 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4613</guid>
		<description>Tom, 

Thank you for a detailed response. I have looked at most of the recent entries and learned a bunch about new tools for data smithing. I was already using Talend and that&#039;s how I landed at your blog. 

I started as an Accountant, then got into ERP and then into ETL/Informatica.  Since I never had any IT training as such, I am pretty much self-taught and like to learn new technologies where possible. 

Thanks to your explanation above, I understand the Hamachi concept. I, of course, use corporate VPN and PuTTY all the time. I also use VNC internally only. Connecting to AMI desktop via NX is a great idea but it will not cover for the XE flaws and who knows what other issues that one might not know at all. But a combination of Hamachi and NX should make it very secure at least for ETL purposes. So now NX and Hamachi go on to my long list TO-DOs.  

Thanks again!</description>
		<content:encoded><![CDATA[<p>Tom, </p>
<p>Thank you for a detailed response. I have looked at most of the recent entries and learned a bunch about new tools for data smithing. I was already using Talend and that&#8217;s how I landed at your blog. </p>
<p>I started as an Accountant, then got into ERP and then into ETL/Informatica.  Since I never had any IT training as such, I am pretty much self-taught and like to learn new technologies where possible. </p>
<p>Thanks to your explanation above, I understand the Hamachi concept. I, of course, use corporate VPN and PuTTY all the time. I also use VNC internally only. Connecting to AMI desktop via NX is a great idea but it will not cover for the XE flaws and who knows what other issues that one might not know at all. But a combination of Hamachi and NX should make it very secure at least for ETL purposes. So now NX and Hamachi go on to my long list TO-DOs.  </p>
<p>Thanks again!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gobansaor</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4612</link>
		<dc:creator>gobansaor</dc:creator>
		<pubDate>Thu, 12 Jun 2008 17:28:52 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4612</guid>
		<description>Sean,

Great to see another SQLite convert and to find another datasmith (I sometimes wonder if I’m just talking to myself on this blog).  I often think that data smithing should become a sub-discipline within the accounting profession rather than within IT (with data quality and governance high on the agenda). 

I have not yet created a public AMI and would need to do a bit more research into how to securely set one up (don&#039;t want to end up sharing my AWS credentials with the world). But it is definitely on my to-do list.  Likewise, my knowledge of Ubuntu (and Debian distros in general) is at an early stage. Having said that, I&#039;m really impressed so far and I think it&#039;s going to be my distro of choice.  I will let you know when I&#039;ve something to show.

Why a VPN (and Hamachi in particular)?  A Virtual Private Network allows you to securely pipe communications between two machines.  VNC, on the other hand, by default sends data as clear text; some VNC products offer encryption as an add-on but the most common way to protect transmitted traffic is use a VPN such as SSH tunnels.  NX is out of the box secure as it is built with an integrated SSH tunneling mechanism (another good reason to use NX).

But accessing your server&#039;s desktop is only one type of traffic; applications that expose data via network ports such as databases and application servers are another.  This is where Hamachi VPN comes in.  I could and occasionally do use Putty to set up  SSH tunnels and for totally security that is what I would recommend, but Hamachi is drop-dead simple to setup and use and good enough for many situations. 

So, for example, my EC2 hosted OracleXE exposes its Apex control panel via port 8080, I could open this port to the public (or a restricted IP range), but OracleXE is totally unsuitable for public internet facing (lots of un-patched security flaws, doesn’t support SSL, even passwords are sent in the clear). 

So what’s my alternative? Front it with something like Pound (more software, yet another skill to learn); restrict it to an IP range (I’m behind two layers of NAT addressing,  wouldn’t work for me).  No, the simplest thing is to install Hamachi, open its (secure) port to the internet, join my private network and viola I can now securely access any port within the server.

I currently use Hamachi to wrap VNC and HTTP traffic (Oracle, Palo and an FTP server)  to and from EC2 and I also have it setup on my desktop, laptop and various “virtual machines” to allow me to communicate with any of my machines  (virtual or real, Windows or Linux) without bothering with all the usual firewall/file sharing hassles.

Tom</description>
		<content:encoded><![CDATA[<p>Sean,</p>
<p>Great to see another SQLite convert and to find another datasmith (I sometimes wonder if I’m just talking to myself on this blog).  I often think that data smithing should become a sub-discipline within the accounting profession rather than within IT (with data quality and governance high on the agenda). </p>
<p>I have not yet created a public AMI and would need to do a bit more research into how to securely set one up (don&#8217;t want to end up sharing my AWS credentials with the world). But it is definitely on my to-do list.  Likewise, my knowledge of Ubuntu (and Debian distros in general) is at an early stage. Having said that, I&#8217;m really impressed so far and I think it&#8217;s going to be my distro of choice.  I will let you know when I&#8217;ve something to show.</p>
<p>Why a VPN (and Hamachi in particular)?  A Virtual Private Network allows you to securely pipe communications between two machines.  VNC, on the other hand, by default sends data as clear text; some VNC products offer encryption as an add-on but the most common way to protect transmitted traffic is use a VPN such as SSH tunnels.  NX is out of the box secure as it is built with an integrated SSH tunneling mechanism (another good reason to use NX).</p>
<p>But accessing your server&#8217;s desktop is only one type of traffic; applications that expose data via network ports such as databases and application servers are another.  This is where Hamachi VPN comes in.  I could and occasionally do use Putty to set up  SSH tunnels and for totally security that is what I would recommend, but Hamachi is drop-dead simple to setup and use and good enough for many situations. </p>
<p>So, for example, my EC2 hosted OracleXE exposes its Apex control panel via port 8080, I could open this port to the public (or a restricted IP range), but OracleXE is totally unsuitable for public internet facing (lots of un-patched security flaws, doesn’t support SSL, even passwords are sent in the clear). </p>
<p>So what’s my alternative? Front it with something like Pound (more software, yet another skill to learn); restrict it to an IP range (I’m behind two layers of NAT addressing,  wouldn’t work for me).  No, the simplest thing is to install Hamachi, open its (secure) port to the internet, join my private network and viola I can now securely access any port within the server.</p>
<p>I currently use Hamachi to wrap VNC and HTTP traffic (Oracle, Palo and an FTP server)  to and from EC2 and I also have it setup on my desktop, laptop and various “virtual machines” to allow me to communicate with any of my machines  (virtual or real, Windows or Linux) without bothering with all the usual firewall/file sharing hassles.</p>
<p>Tom</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sean</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4611</link>
		<dc:creator>Sean</dc:creator>
		<pubDate>Thu, 12 Jun 2008 15:26:20 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4611</guid>
		<description>Hi Goban Saor, 

Your blog is excellent and is one I often check (via RSS). I&#039;ve been data smithing for last several years after I got tired of being an accountant!

I was thinking of setting up an AMI too with Talend, Oracle XE, PERL with all modules needed for Talend (I am not very familiar with Java which is not good). Any chance you would be sharing your image? I would love to start with yours. 

If you are using NX or VNC, what is the purpose of Hamachi VPN? I am just trying to understand. 

And thank you about your posts on SQLITE. It helps me a bunch with my ETL work. 

Regards,
Sean</description>
		<content:encoded><![CDATA[<p>Hi Goban Saor, </p>
<p>Your blog is excellent and is one I often check (via RSS). I&#8217;ve been data smithing for last several years after I got tired of being an accountant!</p>
<p>I was thinking of setting up an AMI too with Talend, Oracle XE, PERL with all modules needed for Talend (I am not very familiar with Java which is not good). Any chance you would be sharing your image? I would love to start with yours. </p>
<p>If you are using NX or VNC, what is the purpose of Hamachi VPN? I am just trying to understand. </p>
<p>And thank you about your posts on SQLITE. It helps me a bunch with my ETL work. </p>
<p>Regards,<br />
Sean</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eric Hammond</title>
		<link>http://blog.gobansaor.com/2008/06/11/nx-rather-than-vnc-for-ec2-desktop/#comment-4610</link>
		<dc:creator>Eric Hammond</dc:creator>
		<pubDate>Wed, 11 Jun 2008 22:36:17 +0000</pubDate>
		<guid isPermaLink="false">http://gobansaor.wordpress.com/?p=376#comment-4610</guid>
		<description>Gobán, I&#039;m super-pleased to hear that an Ubuntu AMI listed on http://alestic.com worked well for you.  I build these using the best knowledge I&#039;ve been able to gather over the last year on EC2, and I agree that NX is amazing compared to VNC.  

I would invite you to join a growing community of Ubuntu EC2 users at http://ec2ubuntu-group.notlong.com

FYI, both of the current links are broken in the above sentence which mentions my name :)</description>
		<content:encoded><![CDATA[<p>Gobán, I&#8217;m super-pleased to hear that an Ubuntu AMI listed on <a href="http://alestic.com" rel="nofollow">http://alestic.com</a> worked well for you.  I build these using the best knowledge I&#8217;ve been able to gather over the last year on EC2, and I agree that NX is amazing compared to VNC.  </p>
<p>I would invite you to join a growing community of Ubuntu EC2 users at <a href="http://ec2ubuntu-group.notlong.com" rel="nofollow">http://ec2ubuntu-group.notlong.com</a></p>
<p>FYI, both of the current links are broken in the above sentence which mentions my name <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>
