[fw-wiz] Authenticated VS Anonymous in a secure Zone

From: Roger Barbeau (r_barbeau_at_videotron.ca)
Date: 05/14/04

  • Next message: Paul D. Robertson: "Re: [fw-wiz] Authenticated VS Anonymous in a secure Zone"
    To: firewall-wizards@honor.icsalabs.com
    Date: Fri, 14 May 2004 15:04:24 -0400
    
    

    Hi!

    A design question for all of you.

    Let's say that we have two web servers in our DMZ.
    Traffic to the web server 1 is authenticated by the firewall and the
    credential is relayed to the web server 1.
    Traffic to the web server 2 is anonymous.

    What is the security concern about having authenticated traffic and
    anonymous traffic going to the same zone?

    Regards,

    Roger Barbeau
    CCDA, CISSP, MCSE
    Email: rbarbeau@lgs.com

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Paul D. Robertson: "Re: [fw-wiz] Authenticated VS Anonymous in a secure Zone"

    Relevant Pages

    • RE: Possible method to prevent spread of CodeRed and other simila r wo rms
      ... Restricting tcp/port80 initiated outbound connections from the DMZ is an ... I'll assume you've group your web server objects ... residing in the DMZ (ex. ... The primary reason that I can think of for a web server to initiate Internet ...
      (Incidents)
    • Re: DMZ Arguments....
      ... A DMZ is used with a firewall, ... link to the rest of the network. ... A common approach for an attacker is to break into a host that's vulnerable ... the case of a web server, unauthenticated and untrusted users might be ...
      (Security-Basics)
    • Re: DMZ and file sharing
      ... >> I have my WebServer connected to the DMZ port of a firewall. ... I dont have DMZ enabled on any of my gateways!! ... You need to consider the safety of the LAN when the web server gets ...
      (microsoft.public.windows.server.sbs)
    • Re: [opensuse] Web Server in DMZ accessing Database in Internal Network
      ... At the moment I have an Intranet web server with Apache2. ... system lies on a DRBD cluster server, with a NFS4 export of the ... declared EXT, another DMZ, and the third INT. ... and the Internal NIC on a switch to the Internal Network ...
      (SuSE)
    • Re: Joining web server to SBS domain - any pre-cautions?
      ... I'm trying to plan for joining our web server (Server 2003 Std. ... You should have a REAL FIREWALL APPLIANCE, ... A single public IP can provide HTTP access for the DMZ Network and also ... If you firewall has a DMZ and it's in the same Subnet as the LAN, ...
      (microsoft.public.windows.server.sbs)