- pfSense 2.x Cookbook
- David Zientara
- 192字
- 2021-06-10 18:30:08
Getting ready
The optional network you will create in this network will be a DMZ, which is short for the DeMilitarized Zone. The idea of a DMZ is to have a network where some traffic is allowed to pass and some traffic is not. Typically, traffic in the DMZ is allowed to pass to and from the internet but not to other internal networks. Traffic is allowed to pass from internal networks to the DMZ. Thus, the flow of traffic looks like this:
Internet <<>> DMZ << Internal networks
Unsafe internet traffic, for example, is allowed to enter a web server in the DMZ. LAN traffic is allowed to enter the DMZ as well, for example, if someone on the LAN wants to access the web server as well. However, the key lies in the fact that no DMZ traffic is allowed to access the internal networks.
To configure a DMZ, you will need at least one spare interface, and you will have to have added it using the procedure outlined in the Identifying and assigning interfaces recipe. We will assume that you have added at least one such interface (named OPT1).
- 流式系統(tǒng)
- 走進(jìn)搜索引擎
- 計算機(jī)網(wǎng)絡(luò)技術(shù)與應(yīng)用(第2版)
- 網(wǎng)絡(luò)規(guī)劃與設(shè)計實(shí)用教程
- HIS內(nèi)核設(shè)計之道:醫(yī)院信息系統(tǒng)規(guī)劃設(shè)計系統(tǒng)思維
- 監(jiān)控平臺解密:IT系統(tǒng)風(fēng)險感知和洞察
- 開源網(wǎng)絡(luò)模擬器ns-3:架構(gòu)與實(shí)踐
- 云原生模式
- Cisco Unified Communications Manager 8:Expert Administration Cookbook
- 釋放數(shù)據(jù)價值:數(shù)據(jù)資產(chǎn)評估方法與系統(tǒng)設(shè)計
- Python Network Programming
- 云原生應(yīng)用管理:原理與實(shí)踐
- Google Plus First Look:a tip-packed,comprehensive look at Google+
- NS2仿真實(shí)驗(yàn)
- 系統(tǒng)工程的藝術(shù):用基于模型的系統(tǒng)工程方法構(gòu)建復(fù)雜系統(tǒng)(原書第2版)