I have seen DMZs set up between two firewalls and off a third network
from the firewall. Example, firewall has connection to the internet
router, another connection to the inside network, and a third to the
DMZ segment. This is the method I've usually used, the idea being to
have a separate network segment, controlled by the firewall, for
servers accessed by the outside world. The firewall rule set then
controls traffic so outside access is allowed to the DMZ but not the
inside. Inside can access the DMZ, and the DMZ devices can access
inside devices as required but under strict control of the firewall.

Ed

Tuesday, April 02, 2002, 11:41:08 AM, you wrote:

DLJ> I heard that you can make a DMZ with a router and a firewall. Is that a good
DLJ> way to make a DMZ, or should you use 2 firewalls?

DLJ> Thanks in advance.


Reply via email to