PHWinfo banniere

Titres
PORTAIL ANNUAIRE ARTICLES COMPARATEUR HÉBERGEURS DEVIS FORUMS RÉDUCTEUR D'URL
Précédent   PHWinfo > Forums Hébergement > Forum Noms de domaine > ms.public.win.server.dns > DNS Behind A Firewall
S'inscrire FAQ Membres Recherche Messages du jour Marquer les forums comme lus
DNS Behind A Firewall

Réponse
 
LinkBack Outils de la discussion
Vieux 21/04/2008, 14h34   #1
Paul Taylor
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut DNS Behind A Firewall

Hello folks

i am about to embark on what seems on face value to be a rather daunting
task - moving my domian controller / web server behind a firewall apliance. I
have always been wide open up till now and feel the need for more security.
my worry is this. the server holds primary records for about 40 domain names,
all the lookup zones are setup with public ip address with web pages
controlled by IIS6. the apliance will run firewall NAT so the ip address on
the server will change to a private 172.16.10.??? number and the apliance
will map the old public address to the new private one. Question is do i have
to change all my forward zones to the new ip or do they retain the old one?

thanks
--
Paul - South Africa
  Réponse avec citation
Vieux 21/04/2008, 22h55   #2
Anthony [MVP]
Aucun Avatar
 
Messages: n/a
Hébergeur:
Par défaut Re: DNS Behind A Firewall

Paul,
No, Yes.
The DNS server should give out the addresses that the DNS clients will use
to contact the hosts. I assume that will be the same public addresses as
now. If the hosts are behind your firewall, and if the firewall uses NAT,
then the firewall will do the translating between external and internal
names.
It can be simpler just to use external addresses and not use NAT.
Anthony,
http://www.airdesk.co.uk


"Paul Taylor" <PaulTaylor@discussions.microsoft.com> wrote in message
news:B180953C-CFA9-4773-9B62-0954E9AA978F@microsoft.com...
> Hello folks
>
> i am about to embark on what seems on face value to be a rather daunting
> task - moving my domian controller / web server behind a firewall
> apliance. I
> have always been wide open up till now and feel the need for more
> security.
> my worry is this. the server holds primary records for about 40 domain
> names,
> all the lookup zones are setup with public ip address with web pages
> controlled by IIS6. the apliance will run firewall NAT so the ip address
> on
> the server will change to a private 172.16.10.??? number and the apliance
> will map the old public address to the new private one. Question is do i
> have
> to change all my forward zones to the new ip or do they retain the old
> one?
>
> thanks
> --
> Paul - South Africa



  Réponse avec citation
Réponse


Outils de la discussion

Règles de messages
Vous ne pouvez pas créer de nouvelles discussions
Vous ne pouvez pas envoyer des réponses
Vous ne pouvez pas envoyer des pièces jointes
Vous ne pouvez pas modifier vos messages

Les balises BB sont activées : oui
Les smileys sont activés : oui
La balise [IMG] est activée : oui
Le code HTML peut être employé : non
Trackbacks are oui
Pingbacks are oui
Refbacks are oui


Fuseau horaire GMT +1. Il est actuellement 10h29.


Édité par : vBulletin® version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0 RC5 Tous droits réservés.
Version française #16 par l'association vBulletin francophone
PHWinfo est un site Éducation Sans Frontières
Ad Management by RedTyger
©Tous droits réservés par les parties respectives
Page generated in 0,08701 seconds with 10 queries