[Techtalk] DMZs, etc.

Jenn Vesperman jenn at anthill.echidna.id.au
Tue Dec 11 08:02:33 EST 2001


Just a spot of theory here:

The reason for putting servers in a DMZ and having a separate zone for
internal boxes is that servers run extra software and have extra ports
open. This makes them more vulnerable than workstations.

NOT having a firewall between the servers and the workstations makes the
workstations (and the local traffic) almost as vulnerable as the
servers. This is usually considered A Bad Thing - at least in commercial
situations.

Whether you-as-an-individual care about the extra vulnerability is
really your decision.



Jenn V.
-- 
    "Do you ever wonder if there's a whole section of geek culture 
        	you miss out on by being a geek?" - Dancer.

jenn at anthill.echidna.id.au     http://anthill.echidna.id.au/~jenn/





More information about the Techtalk mailing list