[prev in list] [next in list] [prev in thread] [next in thread] 

List:       fwtk-users
Subject:    Re: Running web and ftp server behind a firewall
From:       Paul A Beltrani <beltrani () hawaii ! edu>
Date:       1997-12-24 21:27:32
[Download RAW message or body]

[To be removed from this list send the message "unsubscribe fwtk-users" in the
BODY of a mail message to majordomo@ex.tis.com.]



On Tue, 23 Dec 1997, jason xu wrote:

> Does fwtk support running a web server and ftp server behind the firewall
> box? The web server and ftp server needs to be accessed by the public.

Yes, you can use plug-gw to create a connection between your firewall and 
you inside machine.  However, you are creating a path to the inside of
your firewall.

To the list in general:

Would it not be better to:
  1) put the web machine in the DMZ on the OUTSIDE of the firewall
  2) block all traffic between the screening router and the Web machine
  3) use plug-gw to pass traffic between the firewall and the Web server

  This keeps your web server relatively secure and does not pass traffic
  inside your your perimeter?  (Of course this assumes you have a DMZ)

   - Paul Beltrani
     Oceanic Imaging Consultants
     808 539-3707

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic