Web Servers And Firewall Zones Connecticut

There are several steps that you can take to secure your LAN. In the following article, you'll learn about web servers and firewall zones.

Local Companies

Anderson Computer
203-245-5881
25 Boston Post Rd
Madison, CT
Cybershore, Inc
203-245-1175
168 Boston Post Road
Madison, CT
Cybershore, Inc.
203-245-1175
168 Boston Post Road
Madison, CT
Blue Sea Design
203-458-3213
Guilford, CT
HarveyMalis Communications, LLC
203 458-0283
321 East River Road
Guilford, CT
Localnet Corp
(203) 743-3324
Danbury, CT
Qgm Web Site Development
(860) 345-2483
Haddam, CT
Recol
(203) 776-4874
555 Long Wharf Dr Ste 12
New Haven, CT
Nexternal Solutions
(203) 972-5726
199 Elm St
New Canaan, CT
Epicenter
(203) 531-5100
6 Glenville St
Greenwich, CT

Every network that has an internet connection is at risk of being compromised. Whilst there are several steps that you can take to secure your LAN, the only real solution is to close your LAN to incoming traffic, and restrict outgoing traffic.

However some services such as web or FTP servers require incoming connections. If you require these services you will need to consider whether it is essential that these servers are part of the LAN, or whether they can be placed in a physically separate network known as a DMZ (or demilitarised zone if you prefer its proper name). Ideally all servers in the DMZ will be stand alone servers, with unique logons and passwords for each server. If you require a backup server for machines within the DMZ then you should acquire a dedicated machine and keep the backup solution separate from the LAN backup solution.

The DMZ will come directly off the firewall, which means that there are two routes in and out of the DMZ, traffic to and from the internet, and traffic to and from the LAN. Traffic between the DMZ and your LAN would be treated totally separately to traffic between your DMZ and the Internet. Incoming traffic from the internet would be routed directly to your DMZ.

Therefore if any hacker where to compromise a machine within the DMZ, then the only network they would have access to would be the DMZ. The hacker would have little or no access to the LAN. It would also be the case that any virus infection or other security compromise within the LAN would not be able to migrate to the DMZ.

In order for the DMZ to be effective, you will have to keep the traffic between the LAN and the DMZ to a minimum. In the majority of cases, the only traffic required between the LAN and the DMZ is FTP. If you do not have physical access to the servers, you will also need some sort of remote management protocol such as terminal services or VNC.

Database servers

If your web servers require access to a database server, then you will need to consider where to place your database. The most secure place to locate a database server is to create yet another physically separate network called the secure zone, and to place the database server there.

The Secure zone is also a physically separate network connected directly to the firewall. The Secure zone is by definition the most secure place on the network. The only access to or from the secure zone would be the database connection from the DMZ (and LAN if required).

Exceptions to the rule

The dilemma faced by network engineers is where to put the email server. It requires SMTP connection to the internet, yet it also requires domain access from the LAN. If you where to place this server in the DMZ, the domain traffic would compromise the integrity of the DMZ, making it simply an extension of the LAN. Therefore in our opinion, the only place you can put an email server is on the LAN and allow SMTP traffic into this server. However we would recommend against allowing any form of HTTP access into this server. If your users require access to their mail from outside the network, it would be far more secure to look at some form of VPN solution. (with the firewall handling the VPN connections. LAN based VPN servers allow the VPN traffic onto the network before it is authenticated, which is never a good thing.)

About the Author:

Chris Weight is a writer for http://www.stekno.com, information for IT professionals


Article Source:

thePhantomWriters Article Submission Service

Featured Local Company

Anderson Computer

203-245-5881
25 Boston Post Rd
Madison, CT
Computer sales and repairs. Ink Cartridge re-filling. Wireless home security systems.

Related Articles
- Anonymous Proxy Servers Connecticut
WIth the way the Internet has been expanding, it is now extremely important to consider privacy protection whenever you log on. Using an anonymous proxy server is one of many ways to ensure that your information is safe and secure from hackers.
- Access Servers Connecticut
- Introduction Of Proxy Server Connecticut
- Internet Firewalls To Protect Your Computer Connecticut
- Sygate Personal Firewall Connecticut
- Computer Safety Connecticut
- Firewalls Connecticut
- Overview Of Servers Connecticut
- Sygate Personal Firewall Configuration Connecticut
- Network Monitoring For Ecommerce Connecticut
Regional Articles
- Web Servers And Firewall Zones Ansonia CT
- Web Servers And Firewall Zones Bethel CT
- Web Servers And Firewall Zones Bloomfield CT
- Web Servers And Firewall Zones Branford CT
- Web Servers And Firewall Zones Bridgeport CT
- Web Servers And Firewall Zones Bristol CT
- Web Servers And Firewall Zones Cheshire CT
- Web Servers And Firewall Zones Danbury CT
- Web Servers And Firewall Zones East Hartford CT
- Web Servers And Firewall Zones East Haven CT
- Web Servers And Firewall Zones Enfield CT
- Web Servers And Firewall Zones Glastonbury CT
- Web Servers And Firewall Zones Greenwich CT
- Web Servers And Firewall Zones Groton CT
- Web Servers And Firewall Zones Guilford CT
- Web Servers And Firewall Zones Hamden CT
- Web Servers And Firewall Zones Hartford CT
- Web Servers And Firewall Zones Manchester CT
- Web Servers And Firewall Zones Meriden CT
- Web Servers And Firewall Zones Middletown CT
- Web Servers And Firewall Zones Milford CT
- Web Servers And Firewall Zones Naugatuck CT
- Web Servers And Firewall Zones New Britain CT
- Web Servers And Firewall Zones New Canaan CT
- Web Servers And Firewall Zones New Haven CT
- Web Servers And Firewall Zones New London CT
- Web Servers And Firewall Zones Newington CT
- Web Servers And Firewall Zones North Haven CT
- Web Servers And Firewall Zones Norwalk CT
- Web Servers And Firewall Zones Norwich CT
- Web Servers And Firewall Zones Plainville CT
- Web Servers And Firewall Zones Ridgefield CT
- Web Servers And Firewall Zones Rocky Hill CT
- Web Servers And Firewall Zones Shelton CT
- Web Servers And Firewall Zones Simsbury CT
- Web Servers And Firewall Zones South Windsor CT
- Web Servers And Firewall Zones Southbury CT
- Web Servers And Firewall Zones Southington CT
- Web Servers And Firewall Zones Stamford CT
- Web Servers And Firewall Zones Storrs Mansfield CT
- Web Servers And Firewall Zones Stratford CT
- Web Servers And Firewall Zones Torrington CT
- Web Servers And Firewall Zones Trumbull CT
- Web Servers And Firewall Zones Vernon Rockville CT
- Web Servers And Firewall Zones Wallingford CT
- Web Servers And Firewall Zones Waterbury CT
- Web Servers And Firewall Zones West Hartford CT
- Web Servers And Firewall Zones West Haven CT
- Web Servers And Firewall Zones Westport CT
- Web Servers And Firewall Zones Wethersfield CT
- Web Servers And Firewall Zones Willimantic CT
- Web Servers And Firewall Zones Wilton CT
- Web Servers And Firewall Zones Windsor CT
- Web Servers And Firewall Zones Winsted CT
- Web Servers And Firewall Zones Wolcott CT

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Advertising Family Home Services Real Estate Resources
Business Services Fashion Industrial Goods & Services Retail & Consumer Services
Career Financial Services Insurance Software
Cars Food & Beverage Internet Technology
Computer Hardware Franchise Legal Telecommunications
Construction Health Miscellaneous Trade Shows
Education Holidays Nightlife Travel
Entertainment Home Appliances Online Database Weddings
Environmental Home Electronics Pets World History