[prev in list] [next in list] [prev in thread] [next in thread] 

List:       firewalls-gc
Subject:    RE: WEB SERVER behind a linux firewall with socks
From:       Helmuth Breitenfellner <HBreitenfellner () ist ! co ! at>
Date:       1998-05-28 14:10:12
[Download RAW message or body]

[To unsubscribe, send mail to majordomo@lists.gnac.net with
"unsubscribe firewalls" in the body of the message.]
-
> hello,
> I have to secure a network.
> this network have workstation (95,NT) and also a web server (which
> contains internet sites).
> I tought putting a firewall just behind my router but i can't because
> socks don't allow that.
> 
> How can i secured my web server?
> Do i have to use another software?
> Is the router(CISCO 2500) can secure the web server?
> 
> Thanks.
Just to make sure I got your setup I try to make a picture of it:

           I N T E R N E T
----------------------------------
                 |
      ---------------------
     | Router (Cisco 2500) |
      ---------------------
                 |
   ------------------------------------------------------
                 |                              |
      ----------------------               ------------
     | SOCKS Server (LINUX) |             | Web Server |
      ----------------------               ------------
                 |
------------------------------------------------
  |            |            |               |
 ---          ---          ---             ---
|W95|        |WNT|        |WNT|           |W95|
 ---          ---          ---             ---

As far as I can see this seems to be a reasonable setup. Your
router can provide some basic security  for your Web server.
Just specify in the rules that besides TCP PORT 80 no other port
can be accessed. Of course,
your Web server resides in a DMZ - you will have to secure the
machine and especially the HTTP server.
The same is true for your LINUX SOCKS server - firewall, it
depends a lot on the setup of that machine how secure your
network is.

Kind regards,
Helmuth Breitenfellner
-----------------------------------------
Helmuth Breitenfellner
HBreitenfellner@ist.co.at
IT Consultant
Informations- und SystemTechnologiegesmbH
http://www.ist.co.at

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic