Firewall Wizards mailing list archives

Strange setup


From: franco segna <fsegna () web de>
Date: Thu, 26 Feb 2004 15:38:37 +0100


Hi everybody,
I'm being confronted with the following existing setup:


   T1                    --------------------------------
(Internet                 |        LAN backbone          |
and VPNs)                ------------+---+---+-+-+-+-+---
    |                                |   |   | | | | |
    |  +-------+ local x.x.x.254/24  |   |   | | | | +-
    |  | Sonic +---------------------+   |   | | | +-
    +--+  Wall |                         |   | | |
       |  Pro  +------+                  |   | | +- SQL
       +-------+ dmz  |                  |   | +-- mail
                 (?)  |  +--------+      |   +--- etc.
                      |  | MS ISA |      |
                      +--+  2000  +------+
                         | Server | x.x.x.251/24
                         +--------+

The public web server is hosted elsewhere. The LAN comprises 30 workstations.
To complicate the matter, the LAN address family x.x.x. is NOT RFC1918-compliant (and is conflicting with existing 
Internet hosts).
The system is up and running, but I cannot understand the bypassing of the ISA server through the direct connection 
firewall/LAN. And the meaning of DMZ seems to be lost.
Anyone can help me to understand the matter ? Thanks in advance

Franco Segna

---

Franco Segna  -  fsegna () web de
via Dante Alighieri 60 - 31027 Spresiano TV - Italia
phone +39 0422 725020  -  fax +39 0422 888707

Keys server wwwkeys.pgp.net
Key fingerprint = 704C 3070 70A0 680A 760D  025E D849 02AB 2309 87A3




_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: