×

Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

what in a dmz ?

Unanswered Question
Nov 6th, 2002
User Badges:

Iam buildind a network with a pix 515 - 3 segments. and i want to know where can i put the mail server and the DNS server ?

I know that the webserver must be in the dmz.


Thank you

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
tvanginneken Wed, 11/06/2002 - 13:49
User Badges:
  • Silver, 250 points or more

Hi,


in general you can follow this rule: every service that has to be accessible from the internet (outside) shoud be placed in the dmz.

You shoud put your public DNS server (with public addresses) in the DMZ and your private DNS (with private addrresses) in the inside network.

If you can afford two mail servers, you should place one in the inside and one on the dmz. Every outgoing and incoming mail should be routed through the mailserver in the DMZ, the mail server in the DMZ should be the 'server in the middle'. This prevents a direct connection between your internal mail server and the internet.


Kind Regards,

Tom

Actions

This Discussion