cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
416
Views
0
Helpful
2
Replies

Segmentation of Server Network

vkumar1214
Level 1
Level 1

Hi All,

What is the best practice to segment off the servers vlan.

There have been some discussions where we have been suggested to.... may be put a firewall in the front of core switches and have all traffic go through that.

How realistic is this given the numbers around 200 including AD, exchange, SQL.....VM's.

We already have seprate VLAN's.

2 Replies 2

vkumar1214
Level 1
Level 1

anyone

any suggestions?

From a security standpoint it is recommended to put them behind a firewall on a DMZ interface away from the rest of the network, this is to control inbound and outbound access. With that being said, you need to consider if any of the services you provide on those servers is sensitive to NAT translations, if there is no problem with NAT you can have the firewalll translate.

Javier Zamora