TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------

Hi,

we are deploying ServerSensors 5.5 to some web-servers in a DMZ which is only
connected to our internal LAN through a maintenance link. We can not access
these sensors directly only through a plug-gw.

The layout is the following:



                  LAN
                   |
                   |
         A. FW-1 with plug-gw
listening on port 12998, 22998 and 1902, 2902
                   |
                   |  (maintenance link)
                   |
     B. FW-1 with the internet uplink      <->    Internet
          |                     |
          |                     |
          |                     |
        DMZ 1                 DMZ 2
 C. Host listening       D. Host listening     
  on 2998 and 2902        on 2998 and 2902.




The ports 12998 and 1902 on host A. are forwarded via the plug-gw to host C.
2998 and 1902.
The ports 22998 and 2902 on host A. are forwarded via the plug-gw to host D.

Host A. and B. are allowing the connections (seeing an "accept"-log entry in
the firewall log).

Is there anybody else using RealSecure and plug-gw for their DMZ's? 
Any know issues?
Or has anyone a better idea for providing the connectivity requiered for the
sensors?

Thanks in advance

Marc



__________________________________________________________________

Gesendet von Yahoo! Mail
http://mail.yahoo.de


Reply via email to