dhcpd in dmz ?

From: peter pilsl (pilsl_at_goldfisch.at)
Date: 10/27/04


Date: Wed, 27 Oct 2004 13:09:50 +0200


We currently have one server that provides dhcpd, bind, smtp, imap, web
... for our LAN. Now we want to open imap/web for access from the
outside too and think about moving this server to the DMZ.

Does that make sense? Is it technically possible with common firewalls?
(at the moment we use a softwarefirewall, but we think about switching
to a hardwarefirewall like the zyxel ZyWall50) Especially dhcpd bothers
me, cause I dont have any idea if it is possible to "open" a door for
arp between the DMZ and the intranet. To me it sounds like this would
spoil the whole sense of DMZ.

any comments highly appretiated,
thnx,
peter

-- 
http://www2.goldfisch.at/know_list


Relevant Pages

  • Re: dhcpd in dmz ?
    ... > We currently have one server that provides dhcpd, bind, smtp, imap, web ... > outside too and think about moving this server to the DMZ. ... nic (which might or might not be allowed direct communication with LAN). ...
    (comp.os.linux.networking)
  • Strange DHCPd problem
    ... network cable to XL0, strange things happens on the internal XL1 Network. ... I can ping and SSH to the server but Samba-access and webservices on the ... The clients can renew IP-adresses from the dhcpd server. ... subnet 10.0.0.0 netmask 255.255.255.0 { ...
    (freebsd-questions)
  • [dhcpd] BOOTP from dynamic client and no dynamic leases
    ... I've installed the ISC dhcpd program ... (censored for host names and IP addresses): ... # this server will only host bootp, thus the range is left out ... That's all of the globals in use by this server and a single host ...
    (freebsd-questions)
  • Re: Promiscuous BOOTP server?
    ... I'm trying to set up a BOOTP/tftpd server so that I can boot diskless ... I've read the dhcpd docs, ... require MAC addresses. ... Is there a way to set up a server without requiring the MAC addresses? ...
    (comp.os.linux.setup)
  • dhcpd -> no activity...
    ... I'm trying to get a dhcp server up and running. ... debian package for dhcpd, and edited the config so that it runs on eth1. ... using my laptop that can successfully connect to my best buy ...
    (comp.os.linux.networking)