[fw-wiz] separating the servers on a switch

From: Shimon Silberschlag (shimons@bll.co.il)
Date: 09/12/02


From: "Shimon Silberschlag" <shimons@bll.co.il>
To: <firewall-wizards@honor.icsalabs.com>
Date: Thu Sep 12 09:28:02 2002

Lets say we have an internet segment, protected by firewalls at both
ends. On that segment are various servers.
The servers need to talk to other servers outside the segment; uplink
its the internet, downlink the backend servers.
Some of the servers need to be able to talk among them.
We want to control which server can talk to which other server (in the
segment), utilizing one of the firewalls (lets say the uplink one).
Can the group suggest ways to accomplish that? We thought about using
L2 switches with "private VLAN", L3 switches with ACL, but constantly
come across problems doing the routing properly.

Shimon Silberschlag

+972-3-9352785
+972-51-207130



Relevant Pages

  • Re: confusion in subnetting ?
    ... > 1 subnet will contain all my servers while the other segment will contain ... > user computers my servers segment contains game servers, webserver, ...
    (microsoft.public.win2000.networking)
  • Re: Run out of IP addresses
    ... Heck you could probably go to maybe 400+ machines on a segment ... I have five Windows 2003 servers, ... I am running Active Directory on all servers with the DHCP scope ...
    (microsoft.public.windows.server.networking)
  • Re: [fw-wiz] separating the servers on a switch
    ... Simple Access Server Protector ... On that segment are various servers. ... utilizing one of the firewalls. ...
    (Firewall-Wizards)
  • Re: IP Address Change
    ... Environment is recovered at a different 'hot-site' than my Novell ... My final goal is to get all Novell Servers on a Segment ... change the DNS entries there and I will have to work with my ...
    (microsoft.public.windows.server.general)
  • [fw-wiz] Maximum number of subnets on a firewall
    ... anyone has has a better tool, please le me know) I setup the firewall in the ... segment a DMZ segment and an outside segment for each of them): ... Each company gets a segment to for their company LAN. ... companies will have their internet servers. ...
    (Firewall-Wizards)