DMZ and Memberservers

From: jokes54321 (jokes54321_at_nospam.com)
Date: 05/25/05

  • Next message: IanH: "Virus Checking Encrypted Email - Exchange & AD"
    Date: Wed, 25 May 2005 12:24:16 -0700
    
    

    We are in the process of redoing our network to implement a DMZ and add a
    Cisco PIX firewall to the mix. My question is, what roles should the servers
    in the DMZ be? At the moment, our webserver and mailserver are members of
    our Win2K AD domain behind a firewall. Once we move these to the DMZ is it
    best practices to remove them from the domain and make them standalone
    servers?

    How are some of you doing this?

    Thank you,

    Denny


  • Next message: IanH: "Virus Checking Encrypted Email - Exchange & AD"

    Relevant Pages

    • RE: newbie to DMZ
      ... Someone who breaks into a server on the DMZ cannot ... install a sniffer there and gain leverage toward your internal network. ... The DMZ is for servers accessible from the outside world. ... > the Internet the ither is for my Network. ...
      (Security-Basics)
    • Re: One domain controller for several dmzs
      ... DMZ for Windows network traffic. ... > servers into a different network that the web servers. ...
      (microsoft.public.windows.server.active_directory)
    • Re: How to decide on which network interface domain controller is available
      ... We are having two servers and I decided that for us it is ... (DC and Internet Gateway/Servers). ... with clients) and an external network. ... nullifying the security of having a DMZ, since if the DC on the DMZ ...
      (microsoft.public.win2000.active_directory)
    • RE: Gurus: server on perimeter vs. corporate advice
      ... I personally have implemented SharePoint in both environments (DMZ & internal ... front-end servers. ... on their internal network and due ...
      (microsoft.public.security)
    • Re: DMZ design
      ... inbound traffic from the DMZ is blocked. ... In a small company with almost no servers that could be possible ... protects your company from IT'S OWN SERVERS. ... further (FW'ing the DB from the Inside network as well). ...
      (comp.security.firewalls)