Re: Securing networks

From: Piers Kittel (edinfo-list_at_biased.org)
Date: 08/30/03

  • Next message: Alexander Koch: "unsubscribe"
    Date: Sat, 30 Aug 2003 12:35:47 +0100
    To: Tom Allison <tallison@tacocat.net>, debian-user@lists.debian.org
    
    

    Hello,

    > If you are really interested in getting security and having some
    > functionality hosted yourself (mail/web) then I would strongly recommend
    > you consider a DMZ for your hosting.
    >
    > This can be done a number of ways. But if you can spare an extra
    > machine, this would be pretty good and save you about $1,000. Install
    > smoothwall or ip-cop on it and you will have a dedicated hardware
    > firewall. This is a great place to start.
    >
    > Now you can leave all your windows boxes on a LAN and host a DMZ as well.

    In fact, I'm using Smoothwall right now for the current network, but I
    couldn't find anything to do with DMZ on the router? Although the ADSL
    router I have (not used atm, will be using it for the new network
    though) does have DMZ, used that without success in the past, although
    I'm a bit worried about putting my main PC in the DMZ all the time - I
    might want to log in my PC from work. Or I could just forward one port
    that SSH uses?

    Cheers for your help

    Piers

    -- 
    To UNSUBSCRIBE, email to debian-user-request@lists.debian.org 
    with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
    

  • Next message: Alexander Koch: "unsubscribe"

    Relevant Pages

    • Re: DMZ (De-militarized Zone)
      ... It seems like our friend Wolfgang Kueter has not understood what i ... I guess i can explain our network ... Cisco 827 Router ... Usually the DMZ capable routers have LAN,WAN & DMZ, like the one ...
      (comp.security.firewalls)
    • Re: tcp/ip routing question / router design
      ... The first answer is to get an additional $50 cheapo router. ... Since you want a DMZ, I see that you DO have additional computers to hook ... If your DSL router supports trunking, which I am doubting, you can ... and only one network card is provided. ...
      (Security-Basics)
    • Re: DMZ Question
      ... I understand that putting a computer in a router's DMZ exposes its ports to the ... >> network segment, with a router connecting that subnet directly to the office LAN ... >receive unsolicited network traffic from the internetNOTE: Although the DMZplus computer appears ...
      (microsoft.public.windowsxp.network_web)
    • Re: [fw-wiz] Rationale of the great DMZ
      ... >DMZ and its implied security has changed. ... Network activity wouldn't ... >necessarily begin from the DMZ and be tunneled in to the internal network. ... >Commonly SSL accelerators terminate the SSL end point prior to the ...
      (Firewall-Wizards)
    • Re: I dont understand this
      ... any routers between XP and ISA. ... between DMZ and external networks in Shinder's lab scenario? ... In the lab network that we're using for the examples in this section, ... table entry for your DMZ segment's subnetted block on your router ...
      (microsoft.public.isa)