Dear gurus,
Need your suggestion for below query.
We have three servers provided by our customer for Mobile Application they are part of Customer LAN so they are secured through Internet Firewall and Proxy is also behind the firewall. We need direct internet Access without proxy.
2. Providing the direct internet access is not possible as of today in customer site as it is the security issue they cannot by pass the Server Farm from the security Firewall. As the Customer Security Policy is in place.
**************************************************************************************************************************************************************************************
Below is my alternative solution need your asistance how can i give internet access without proxy.
In any alternative solution we again need access from internet to servers (or from servers to internet) to get data.
servers are in customers network, so it may cause much more complex configuration and security concern.
There is two issue
- Access from internet to mobile server information & remote notification servers
- Access from mobile server information & remote notification servers to internet
o it can be restricted with specific IPs (or IP ranges). (we need to access Apple servers for the applications on iPhone, iPad)
Sugguestion:
We configured DMZ (de-militarized zone) in network.
There is no access from internet to none of server in local. In case we need it, we put server in DMZ.
- All access from\to DMZ from\to internet is configured on firewall
- All access from\to DMZ from\to local is configured on firewall.
- And servers in DMZ can access to internet without proxy and all traffic is logged on firewall.
Waiting for your reply.
Thanks,