Internal Database server access from DMZ host

From: Marcus Noveix (noveixat_private)
Date: Mon Jan 10 2000 - 21:25:26 PST

  • Next message: James R Grinter: "RE: any experience with backup solutions for servers in the dmz?"

    Hi
    
    I am new to this list and hoping for some positive feedback on the following 
    scenario.
    
    I am trying to implement a E-Commerce infrastucture currently which has the 
    following structure :
    
    Internet <-->perimeter firewall<-->Amber Zone<-->Internal network.
    
    There is a WEB server in the Amber zone needs connection to a Sybase Server 
    using Sybase Openclient to do queries on the DB(WEB server INITIATING 
    connection to the Sybase server).
    
    If this Sybase Server was to be in the INTERNAL network what sort of 
    security implications does this pose.
    
    I will make sure the security on the DB server is tightened and the server 
    is hardened but besides doing this, what other secure ways are
    there of doing this.
    
    I have read a lot of literature on firewalls and so far gathered that no 
    INITIAL connection should be accepted from Amber Zone hosts to INTERNAL 
    Network
    
    Thanks in advance
    
    N
    
    ______________________________________________________
    Get Your Private, Free Email at http://www.hotmail.com
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 13:56:56 PDT