I am thinking if it is safer to reach the outside world internet, via a Zone.
Will this add additional security, with respect to the global zone?
I think this is an interesting question?
--
This message posted from opensolaris.org
___
zones-discuss
You can definitely have the global zone on one physical interface and the
non-global zone facing the internet on another physical interface. With proper
firewalls, RBAC setup, and lock down of your zone, you can have a very secure
configuration. Take a look at JASS/SST toolkit and the CIS