tcp/ip routing question / router design

From: first last (in5ecure24_at_hotmail.com)
Date: 05/13/04

  • Next message: Dennis Schut: "RE: Windows 2kserver with XP clients - Policies"
    To: security-basics@securityfocus.com, firewalls@securityfocus.com
    Date: Thu, 13 May 2004 00:39:54 -0400
    
    

    hello everyone

    I have a question bout which way is a better implementation for a router,
    heres my situation.

    I have a dsl "modem" that is a router, but it only has 1 ethernet port. im
    saposed to plug the dsl stright into my pc but im not, i have both connected
    via a switch and everything worked instantaly, so im assuming i can plug my
    servers into the switch and run my network.

    What i am trying to do is set up a DMZ, and my LAN to the internet. the
    first way i was going to do this was via a software router/multihoned pc (3
    nics 1 for each network) and set up a firewall and routing ect ect, on that
    pc to securly route my networks.

    1 problem is if i use only the dsl as a router (isp -> dsl -> switch -> pcs)
    then what do i do about having seperate networks for my LAN and DMZ and
    internet conectivity? on the otherhand...

    If i use a pc as a router seperating my DMZ and LAN is very easy since i
    have a nic for each and 1 for my dsl. i dont see why i cant do this but,
    this will consume a pc, and i dont realy have an extra one.

    so my main question is which way do i go w/ or is there other good options,
    mind you money funds are low so simply buying a hardware router isnt realy
    an option. My dsl has options for setting up a public and privet lan, but
    its not like i can physicaly distinguish between the two.

    So im pretty much just looking for the best way to set this up (from a
    security standpoint) and recomendations, help, feed back is GREATLY
    apricated - thank you

    _________________________________________________________________
    FREE pop-up blocking with the new MSN Toolbar – get it now!
    http://toolbar.msn.com/go/onm00200415ave/direct/01/

    ---------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
    any course! All of our class sizes are guaranteed to be 10 students or less
    to facilitate one-on-one interaction with one of our expert instructors.
    Attend a course taught by an expert instructor with years of in-the-field
    pen testing experience in our state of the art hacking lab. Master the skills
    of an Ethical Hacker to better assess the security of your organization.
    Visit us at:
    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    ----------------------------------------------------------------------------


  • Next message: Dennis Schut: "RE: Windows 2kserver with XP clients - Policies"

    Relevant Pages

    • Re: Loss of Connectivity on Only One PC on a LAN
      ... When you ran the Network Setup Wizard, ... The original setup of the LAN was done entirely by the user of the other PC on that LAN in July. ... I use a LAN connection which consists of two PCs each connected to a Linksys BEFSR 41 Router. ...
      (microsoft.public.windowsxp.network_web)
    • Re: 2 wire DSL
      ... this how your network is setup? ... Most DSL routers do NAT by default, ... capabilities so most users opt for a secondary router. ... then your WiFi router is ...
      (Ubuntu)
    • Re: VPN over wireless
      ... You will still the need the Router to issue DHCP and wireless ... network but still access to the internet. ... LAN Router Wireless Router ...
      (microsoft.public.windows.server.sbs)
    • Re: 2 wire DSL
      ... Subject: 2 wire DSL ... Most DSL routers do NAT by default, ... address on the "DSL network". ... your WiFi router ...
      (Ubuntu)
    • RE: tcp/ip routing question / router design EDITED
      ... I am missing one peice of my designed network. ... Now the peice im missing is the router, ... i can use the DSL as the router but im restricted to one LAN that way (so i ... i can use a pc as my router and loose a server from my network, ...
      (Security-Basics)