Re: Security and Need for Firewalls

Kevin Miller ( (no email) )
Thu, 31 Jul 1997 18:33:51 -0400

> IS THERE A POTENTIAL RISK TO THESE SERVERS IF THEY WERE TO PUT THIS IN
PLACE.
> They want to put up a NT Box running only TCP/IP to serve as their mail
> server and a public ftp site and propose running Post Office and IIS.
>
> Should they consider implementing a fire wall or is protocol isolation
for
> the servers sufficient.
>
> Any Ideas appreciated.
I assume the two internal servers will require individual name/passwords
and have access control lists in place?

If the workstations are only going to be used for web & mail, you might
consider giving them RFC1918 addresses and force them to use a proxy server
located on the external NT box. This would eliminate the ability for people
on the 'net to connect to your workstations, and you would only have to
maintain one point of exposure.

Kevin
---------------------------------------------------------------------
Kevin C. Miller Custom Software Design & Network Consulting
CEO, FreshWater, Inc. kevin@devworld.com
---------------------------------------------------------------------