Re: DMZ - Network topology

From: Adie (a_usenetizen@hotmail.com)
Date: 02/20/03

  • Next message: Thomas Jonsson: "Re: Keep impersonated user during session. Please help."
    From: Adie <a_usenetizen@hotmail.com>
    Date: Thu, 20 Feb 2003 16:55:43 +0000
    
    

    Jeff Cochran wrote:
    >On Thu, 20 Feb 2003 14:27:02 +0000, Adie <a_usenetizen@hotmail.com>
    >wrote:
    >
    >>I'm to set-up an IIS webserver in a smallish office environment with LAN,
    >>database server, network PC's, router, switch and an ADSL connection.
    >>
    >>I was wondering about the best topology to secure the server from the rest
    >>of the network, whilst keeping connectivity to the database server. I
    >>remember some college lecturer waffling on about a DMZ, but I think I
    >>started to daydream or something, because I can't remember the specifics.
    >>
    >>Can anyone give me a few pointers, or point me to a site that has specific
    >>info on this sort of set-up?
    >
    >A DMZ is a segment off your firewall that uses separate access rules
    >from both the external WAN segemnt and the internal LAN segment. See
    >your firewall's documentation for this.

    Hi Jeff, unfortunately I haven t purchased the firewall yet, so reading
    the docs is impossible. Just looking for general information before I make
    an decisions on which way to go about the design.



    Relevant Pages

    • DMZ - Network topology
      ... I'm to set-up an IIS webserver in a smallish office environment with LAN, ... database server, network PC's, router, switch and an ADSL connection. ...
      (microsoft.public.inetserver.iis.security)
    • Re: database and app server separated by WAN
      ... network - LAN or WAN - should not matter. ... > with situations where their application server and database server were ...
      (microsoft.public.dotnet.distributed_apps)
    • RE: Firewall DMZ
      ... > some reason they needed to talk to the main network) in a separate ... > Webserver to the Database server and tunnel the ODBC port through it. ...
      (Security-Basics)
    • Re: Remotely edit user disk quota
      ... I'm now promoting you to "batshit insane". ... Seriously, there's no excuse ... workstation and the database server. ... every pair of machines on your network, said network being separated from the ...
      (freebsd-questions)
    • Re: Dual NICs, Routing Problem
      ... I am not able to access the private network unless I set my default ... If I set my default gateway to the .36 network's gateway, ... >Do you have a router/firewall between your DMZ and the private subnet? ... This is the gateway I need to use to get access to the database server ...
      (alt.os.linux.suse)