Security Basics mailing list archives

RE: newbie to DMZ


From: "Brad Bemis" <BRAD.BEMIS () dhl com>
Date: Wed, 27 Aug 2003 09:34:03 -0700

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

You mention 2 servers, and allude to the availability of a router.  To
provide any input of value, could you go ahead and post what computing and
networking resources you have available to you (i.e. an inventory)?   

Thank you for your time and attention,

=======================
Brad Bemis
=======================



Hello, i have a question regarding DMZ design. i have 2 
servers, 1 is for 
the Internet the ither is for my Network. Now speeking from a 
security stand 
point, woulkd it be better to have option 1 or option 2 ? or option 3 
(other) any why please.

option 1         Internet -------- DMZ --------- 
Privet/Internal Network So 
u would connect from ur pri. network to the internet through 
the DMZ.. or

option 2         Internet      so u connect through a router 
instead of the 
DMZ
                         |
         DMZ ---  Router --- Privet Network


-----BEGIN PGP SIGNATURE-----

iQA/AwUBP0zde5DnOfS48mrdEQKBawCff/yCLcTPiJx8CfZZfHSunXhB+zwAoJmf
nF3uRosCuQUGTA7iAtTIhGxS
=1zk0
-----END PGP SIGNATURE-----



---------------------------------------------------------------------------
Attend Black Hat Briefings & Training Federal, September 29-30 (Training),
October 1-2 (Briefings) in Tysons Corner, VA; the world's premier
technical IT security event.  Modeled after the famous Black Hat event in
Las Vegas! 6 tracks, 12 training sessions, top speakers and sponsors.
Symantec is the Diamond sponsor.  Early-bird registration ends September 6.Visit us: www.blackhat.com
----------------------------------------------------------------------------


Current thread: