better logging solution: syslog from router can be pointed to internal syslog server using only one port and not requiring any snmp
alerts, though, may present another issue if more realtime wanted -----Original Message----- From: Cezar Spatariu [mailto:[EMAIL PROTECTED]] Sent: Wednesday, February 13, 2002 6:48 PM To: [EMAIL PROTECTED] Subject: SNMP should be allowed to run in DMZ? I have the folowing problem. I want to receive alerts from the front router that is located behind of my firewall to a syslog server located in a special DMZ area. The SNMP precess on Cisco router is protected by access list.and no UDP connections can be done to the router. It is safe or not? Whitch is the best practice for logging the systems from DMZ? Any design idea or resources? Best Regards, Stefan __________________________________________________ Do You Yahoo!? Send FREE Valentine eCards with Yahoo! Greetings! http://greetings.yahoo.com
