Security Basics mailing list archives

Re: Security/Firewall question


From: Terry Soucy <x-phile () cryptophiles net>
Date: Tue, 29 Jul 2003 19:26:02 -0300

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Heya Gregg,


On Tuesday, July 29, 2003, at 05:40  AM, Gregg wrote:

I'm not certain if-
I want to assign that IP to the OpenBSD firewall, and use NAT and/or RDR to pass on SMTP traffic on port 25 to the email server. Yes? No? Maybe? Am
I a shame on my species?

Yes, you would want to use NAT on the OpenBSD firewall to pass SMTP traffic thru to the mail server.

You might want to re-think your network layout tho. You'll save yourself some routing headaches if you use the OpenBSD firewall to protect the LAN and the mail server (in the DMZ) hooked up to your router.

Leave the Win2K box on the router too. I'm sure others who are scanning it right now would like it that way ;-)

Just my $0.02 CND

Terry
__
Terry Soucy <x-phile () cryptophiles net>
gpg key fingerprint : DD46 C49C 6352 C7B0 15EE  5024 6851 22FF 1A79 1AD5
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (Darwin)

iD8DBQE/JvR+aFEi/xp5GtURAoJeAKCHL7R4n/ESY/MQu7f5SGhp5VcXdQCg7TUF
RTimlqdQUdmJoQxS3XT1oMA=
=RpT1
-----END PGP SIGNATURE-----


---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: