I have seen DMZs set up between two firewalls and off a third network from the firewall. Example, firewall has connection to the internet router, another connection to the inside network, and a third to the DMZ segment. This is the method I've usually used, the idea being to have a separate network segment, controlled by the firewall, for servers accessed by the outside world. The firewall rule set then controls traffic so outside access is allowed to the DMZ but not the inside. Inside can access the DMZ, and the DMZ devices can access inside devices as required but under strict control of the firewall.
Ed Tuesday, April 02, 2002, 11:41:08 AM, you wrote: DLJ> I heard that you can make a DMZ with a router and a firewall. Is that a good DLJ> way to make a DMZ, or should you use 2 firewalls? DLJ> Thanks in advance.
