I would suggest reading "Building Internet Firewalls"
(http://www.bookpool.com/.x/sa78pn34o4/sm/1565928717) for help understanding
this. It not only covers the hows, but the whys of doing such things. Once
you've read some, you should be able to figure out how best to satisfy your
site's needs.
Randy Graham
--
You're kind of trying to pick between "horible disaster" and "attrocious
disaster" -- Paul D. Robertson (on VNC vs. PPTP)
http://www.securitynewbie.com/ - for people like me
> -----Original Message-----
> From: Stewart, Chris B [mailto:[EMAIL PROTECTED]]
> Sent: Monday, July 02, 2001 2:28 PM
> To: '[EMAIL PROTECTED]'
> Subject: DMZ Help!!!!!
>
>
>
> Hello All,
>
> I am in desperate need of some help. I am considering
> implementing a DMZ in
> my network and am interested in knowing how to set up an DMZ.
> What I would
> like to do is put my Web server and mail server behind the DMZ on a
> completely different subnet. What I don't understand is how
> is the routing
> functionality accomplished? Do I have to have a dedicated
> router for this?
> If we do, how do we have sessions from LAN to DMZ but not
> other way? Is this
> done by the router or the firewall. Also, is the DMZ most commonly a
> separate appliance or is it an extra NIC in my firewall
> configured with a
> different IP address. All responses and information on DMZ
> are appreciated.
> I am very ignorant on this topic.
>
> Thanks, Chris Stewart
>
>
> _______________________________________________
> Firewalls mailing list
> [EMAIL PROTECTED]
> http://lists.gnac.net/mailman/listinfo/firewalls
>
>
>
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls