September 2000
Intermediate to advanced
352 pages
6h 41m
English
The demilitarized zone (DMZ) is a special network that joins a private corporate network with an untrusted network. That untrusted network might belong to a business partner, a carrier, an Internet service provider (ISP), or other parts of the corporate network. The DMZ supports very specific ingress and egress connectivity between the two networks.
The DMZ contains routers, packet filters, Ethernet switches, DNS servers, web servers, proxy servers, socks servers, and telnet gateways. It’s generally a collection of subnets configured for very specific security-minded functionality. Correct operation of the DMZ is critical and it must be managed proactively.
Ingress into the private network is often restricted to ...