
12 Architecture Selection 203
12.1 Chapter objectives 203
12.2 Types of screened subnet architectures 203
12.2.1 The perimeter 205
12.2.2 Two routers 207
12.2.3 Single router 208
12.2.4 Multiple screened subnet architecture 208
12.2.5 Screened host 210
12.2.6 Dual-homed host 210
12.3 Single-box architecture 213
12.4 Summary 215
13 External Servers Protection 217
13.1 Chapter objectives 217
13.2 Siting external servers on a perimeter net 217
13.2.1 Security of SQL and web servers 219
13.2.2 Search engines 222
13.2.3 SQL server security 224
13.3 Deploying packet filtering to control access to your servers 225
13.4 Router packet filtering 226
13.5 Using router access ...