|
Question : Adding DMZ servers to the LAN domain ?
|
|
Dear Admins, I have two lans, one called the LAN and the other is the DMZ lan, now i have a domain controller installed in the LAN and i need to connect the servers in the DMZ to the LAN. i have a firewall installed between the LAN and the DMZ. please advice is that good to open ports on the firewall, or please advice what the best that can be done to add the servers in the DMZ to the domain.?
|
Answer : Adding DMZ servers to the LAN domain ?
|
|
a DMZ is setup to protect your internal LAN, you put machine that are going to be access via the internet on a DMZ, but opening more points on the DMZ you are opening security holes.
It can be done, but you are really missing the point off having a DMZ,which is to block all but the really needed ports on the machines in the DMZ and to protect your LAN.
On our DMZ at work we only have port 80 and 443 open
Richie
|
|
|
|