Re: listening on... interfaces

From: Dan Guzman (guzmanda_at_nospam-online.sbcglobal.net)
Date: 05/28/05


Date: Fri, 27 May 2005 19:46:15 -0500


> 1) New hardware firewall (any suggestions?)
> 2) TCP/IP (and UDP) filtering in Advanced TCP/IP Settings?
> 3) IPSec policies?
> 4) Move my SQL databases to an internal server?
> 5) Combination of above?

Every company I've worked for uses a hardware firewall and deploys SQL
Servers on an internal network. You can get the job done using
IPSec/Filtering on your SQL Servers but it's best not to let the traffic in
at all. I'm not a network guy so you probably don't want my recommendations
on hardware :-)

-- 
Hope this helps.
Dan Guzman
SQL Server MVP
"Rick" <Rick@discussions.microsoft.com> wrote in message 
news:60607EA5-883E-4882-9EC7-2F0B4CB5FEBC@microsoft.com...
> "Dan Guzman" wrote:
>> > Isn't it common to not want your SQL Server
>> > to be listening to the wild wild internet?
>>
>> Definitely.  That's what firewalls are for.
>
> Thanks Dan.  The system is a typical (dual-homed) SBS2003.  I thought that 
> I
> got a level of firewalling with SBS.  I guess I was naive.  So I'm not 
> sure
> of which way to go.  Would you folks recommend:
>
> 1) New hardware firewall (any suggestions?)
> 2) TCP/IP (and UDP) filtering in Advanced TCP/IP Settings?
> 3) IPSec policies?
> 4) Move my SQL databases to an internal server?
> 5) Combination of above?
> 


Relevant Pages

  • Re: Web Server Setup
    ... Also, have a bunch of space for temporary SQL dbs, just for playing and tests. ... the specifications you described might be just the hardware for the test machine. ... I need to set up a server to handle an application that will pretty much ... 146GB Drives w/ RAID and dual hot swappable power supplys. ...
    (microsoft.public.windows.server.general)
  • Re: MSCS Questions
    ... hardware won't necessarily speed things up. ... > server solution than we had, including more memory and faster processors. ... > I understand that clustering isn't a performance benefit, ... >> Andrew J. Kelly SQL MVP ...
    (microsoft.public.sqlserver.server)
  • Re: Aktiv - Passiv
    ... SQL Server 200 Ent ... Server 2 gleiche DBund kann weiterfahren. ... > zertifizierte Hardware, kein Datenverlust ... > unterstützt), manuelle Umschaltung, billigere Hardware, Daten können ...
    (microsoft.public.de.sqlserver)
  • Re: "Cult of the Wintel PC" raises head at AWCs switch to Macs
    ... "A SQL Server CAL is required for a device (for example, ... moving to xServes when the current hardware the SQL is running on is ... they spoke of a 3 year hardware cycle. ...
    (comp.sys.mac.advocacy)
  • Re: "Cult of the Wintel PC" raises head at AWCs switch to Macs
    ... "A SQL Server CAL is required for a device (for example, ... moving to xServes when the current hardware the SQL is running on is ... they spoke of a 3 year hardware cycle. ...
    (comp.sys.mac.advocacy)