Petr,

Yes, place the internal web server in a DMZ or 
"second" private network on a new NIC in your
fw. Then all your users must pass through the fw
to get to it. Only allow internal traffic to this new
network.

Why not setup authorization on the web server
and save yourself the hassle? Or are you worried
that someone going to do some 'not nice things'
to it? If so, pull out that security policy,
review(update if needed) and show bad users.

Robert

- -
Robert P. MacDonald, Network Engineer
e-Business Infrastructure
G o r d o n   F o o d    S e r v i c e
Voice: +1.616.261.7987 email: [EMAIL PROTECTED]

>>> "Tuka, Petr" <[EMAIL PROTECTED]> 7/12/00 9:31:09 AM >>>
>
>Hi,
>I have FW-1 4.0 SP5 on NT. If possible use/setup HTTP Secure server for
>securing  internal Web server?
>If YES how can I do it.
>
>Regards 




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to