LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-24-2007, 09:55 AM   #1
kool_kid
Member
 
Registered: Sep 2004
Location: Dubai, UAE
Distribution: RHL
Posts: 350

Rep: Reputation: 30
Help with Linux DMZ What is it? & Howto?


Hiya

i have 3 NICs in my linux machine which is configured as load balancing and failover for internet. Now i want to know what is DMZ and how do i set it up also if i setup a DMZ how many ips can i give that DMZ access to? Help Please.

FYI: im using CENTOS with Kernel 2.6
 
Old 10-24-2007, 11:31 AM   #2
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
Code:
Internet
     |
     |
(public / Internet)
     |
     |
   <eth0>
firewall-<eth1>-------(DMZ)-------Web Services
   <eth2>
     |
     |
(private / Internal LAN)
     |
     |
Rest of the PC's on your LAN
Quote:
In computer security, a demilitarized zone (DMZ), more appropriately known as demarcation zone or perimeter network, is a physical or logical subnetwork that contains an organization's external services to a larger, untrusted network, usually the Internet. The purpose of a DMZ is to add an additional layer of security to an organization's Local Area Network (LAN).

Generally, any service that is being provided to users in an external network should be placed in the DMZ. The most common of these services are web servers, mail servers, and DNS servers. In some situations, additional steps need to be taken to be able to provide secure services.
How many IP's..... Depends on how many you have..

I have 32 Public IP's from my ISP so aside from the one used by the, network, gateway(host), and Broadcast address, I guess that leaves 29 Public IP Addresses I can map to services hosted in the DMZ..

I don't really think there is a limit, other than how many IP's you have...
 
Old 10-24-2007, 03:01 PM   #3
kool_kid
Member
 
Registered: Sep 2004
Location: Dubai, UAE
Distribution: RHL
Posts: 350

Original Poster
Rep: Reputation: 30
Thank you but could u please redirect me to a tut in which it shows how to configure it.
 
Old 10-24-2007, 07:30 PM   #4
farslayer
LQ Guru
 
Registered: Oct 2005
Location: Northeast Ohio
Distribution: linuxdebian
Posts: 7,249
Blog Entries: 5

Rep: Reputation: 191Reputation: 191
http://www.linuxguruz.com/iptables/howto/

http://www.fwbuilder.org/ - Gui front end for 'building' iptables script.

http://www.aboutdebian.com/firewall.htm

http://www.debian-administration.org/articles/73

theres some starting info...
 
Old 10-26-2007, 05:29 AM   #5
kool_kid
Member
 
Registered: Sep 2004
Location: Dubai, UAE
Distribution: RHL
Posts: 350

Original Poster
Rep: Reputation: 30
Thank you very much
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Bandwidth monitor in DMZ & LAN ziox Linux - Networking 3 06-07-2006 09:53 AM
Bandwidth monitor in DMZ & LAN paul_mat Linux - Software 0 06-03-2006 07:17 PM
DMZ HowTo jackster Linux - Security 2 01-21-2005 11:07 AM
firewall & DMZ Access problem AnotherNewbie Linux - Hardware 0 05-16-2002 04:01 PM
Linux firewall with internet & dmz & trusted ikhwan98 Linux - Networking 0 11-23-2001 07:59 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 09:22 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration