Security Basics mailing list archives

Re: VM Host with guests on the Internal and DMZ networks


From: Mark Sutton <work () moltenplanet com>
Date: Tue, 12 Jun 2007 17:38:32 +0100

Hi Megan,

A host configured like this would effectively bypass the security devices that create the DMZ rendering the DMZ pointless I think you had it right with the really bad idea. :-)

Best Regards
Mark Sutton

Megan Kielman wrote:
Security Folks,

We want to have a VMWare
host (VMWare Server) that has guest systems on the DMZ and Internal
LAN. To accomplish
this the host would have two interfaces, one on each network. Is this
a really bad idea from a security perspective? What are some ways to
mitigate the risks?

Thanks!
Megan


Current thread: