Definition: Extranet

Friday, January 26th, 2007

An Extranet is a website that is present on the Internet but is only available to authorized individuals. It is typically protected by a mechanism that requires a visitor to provide an authorized login id and corresponding password. The Extranet mechanisms may also require that a visitor logging in do so using an encrypted connection.

The users of an Extranet are typically employees, customers, or suppliers with a relationship to the organization operating the Extranet.

See also Intranet.

Definition: Intranet

Friday, January 26th, 2007

An Intranet is a website residing on a computer on a local area network or LAN. It is usually not accessible from the outside world (i.e. the rest of the Internet) either because the local network is not connected to the Internet or, more commonly, because it is protected behind a firewall.

An Intranet is typically used to provide information to employees or members of the organization owning the local area network. The Intranet might be used to post company announcements and policies or run web applications (e.g. shared calendars or CRM software).

A common practice in small business is to take an obsolete Windows PC, install Linux and set it up as in inexpensive web server for the Intranet.

See also Extranet.

Options for home and small business networking

Saturday, August 12th, 2006

Assuming you have (or are getting) a DSL or Cable broadband connection… The next question is whether you want to make that connection available to more than one computer and, if so, how.

Almost any small business will end up with multiple computers and most middleclass households have at least two computers, one for the parents and one for the kids.

If one is only connecting one computer to DSL or Cable broadband then all that is needed is a DSL or Cable modem. But the need for networking two or more computers is now so common that most broadband providers routinely offer a combined modem and router unit for no additional charge. It is the router that provides the ability to create a local area network that allows multiple computers to share a single internet/broadband connection.

In our area, the broadband providers are routinely offering a combined modem and WIFI/wired ethernet router unit although you may need to ask for the WIFI/wired router specially or they will pawn off a much less expensive wired ethernet unit.

The WIFI capability will typically support both 802.11g and the older 802.11b wireless standards. These will allow you to share the broadband connection with notebook or desktop PC’s that have the appropriate WIFI card installed in them. The speed of the WIFI connection ranges from a nominal 11mpbs (for 802.11b) to a nominal 54mbps (802.11g). In real life application this range is more like 5.5mbps to 20mbps. However, even at 5.5 mbps, this is faster than your typical broadband connection which will typically run 0.768 mbps to 1.5 mbps. So the bottleneck will not be your router or LAN connection.

The wired ethernet ports and cables will give you either 10 mbps or 100 mbps depending on which router you have and whether your computer’s NIC card supports the 100 mbps standard. Again, even the 10 mbps is so much faster than your broadband that your local network will never be the bottleneck.

802.11b/g WIFI
WIFI has the advantage that you do not need to trail wires between the router and the computer (or pull wires through the wall). But the WIFI signal does become attenuated by distance and walls/floors. For example, our WIFI router is in our second floor office. I had no problem using my notebook in the living room on the first floor but the signal dropped significantly if I took the notebook down into the basement.

Homeplug 1.0
Since I wanted to run a Linux server in the basement, I ended up getting two Home Plug 1.0 adapters that allow one to establish an ethernet connection over the house 120 volt AC wiring. I ended up getting one adapter from NetGear and the other from Belkin. In theory they should work together and I was relieved to find that they did. The claimed speed for Homeplug is about 14 mbps but in actual use it is probably about 4 mbps… Maybe a little slower than 802.11b WIFI but without, at least in my case, the distance attentuation that you get with WIFI.

I am not sure why but Homeplug has never really taken off. There are far more WIFI products and a lot more public awareness of WIFI… But, in some circumstances, Homeplug will work and WIFI will not.

So we now have a LAN with a Mac OS X desktop, a Windows XP desktop, a SUSE Linux server physically running on 802.11b wireless, Homeplug 1.0 power circuit, and wired ethernet. We have two printers (a laser printer and a multifunction printer/scanner/fax) that are also accessed from all three computers via the LAN.

One needs to be aware that both WIFI and Homeplug networking have some security issues.

If you have ever used or seen someone else using a WIFI notebook at a coffeeshop or other WIFI hotspot you will have realized that there is no security and no barrier to the public accessing the network. Unless you are careful, your home network will be equally wide open. At the very least you may find that your neighbors are piggybacking on your DSL or Cable broadband connection, at the worst some local high school hacker may be stealing your identity or storing porn on your computer.

There are three basic steps to making your WIFI network more secure. First is to encrypt the connection using a 128 bit password. This is not as easy as it should be on most systems but make the effort any way.

Basically you set a password on the router and then enter the same password on each of the machines you wish to have connected via WIFI. The tricky part is that one typically enters a plain language password and the router will generate a long hexadecimal string derived from that password… And you then need to enter that long string of characters exactly into each of the WIFI computers you wish to use.

You should also tell your router to stop broadcasting its presence. If people don’t know the router is there they won’t try to hack into it. (A sophisticated attacker will detect it regardless but it may keep to local highschool kids out of your hair.)

Finally, if you really feel paranoid about your WIFI, you can restrict your network by MAC address. Each device (computer, printer, etc.) on your network will have a unique MAC address. You can enter a list of these addresses into your router and it will then only communicate with the machines on the list.

Homeplug is, in a sense, more secure because so few people use it that hackers do not look for it and are unlikely to understand it well enough to hack it. But even so, it is advisable to use the 56 bit network encryption option available for the Homeplug adapters. My understanding is that the Homeplug network signal will only be accessible as far as the nearest power transformer. In my case that is about 3 houses away.

Dynamic Host Configuration Protocol is a router capability which automatically assigns each computer on your LAN with a temporary but unique IP address. That is what allows you to walk into a Borders Bookstore cafe and just connect your notebook to their WIFI hotspot. Turning this off and using assigned IP addresses might increase your security marginally but using a MAC list would be much more effective. In my case I turned off DHCP simply because I never could get it to work properly and disabling DHCP and assigning IP addresses was the line of least resistance.

Do you (Salem Design) only work with customers in your local area?

Monday, April 17th, 2006

The short answer is we can help your with your web design and development needs regardless of far you are from our location (Salem, Massachusetts). Most of our customers are relatively local (i.e. within Massachusetts) but that is primarily a function of how we find each other.

The Internet and Web are great means of working at long distances and we have developed websites for customers as far away as Minnesota and we currently have customers in Maine and New York.

And even with local customers we have done web projects where we never met the client in person but communicated solely by email, telephone, and the web.

If you want support for your home or office computing environment then location is more of an issue. We can provide some assistance by phone but any serious troubleshooting or setup of your home or office systems will require an onsite visit.