Compare cert salaries and plan your next career move
HeroPsycho wrote: » Why put the BES in the DMZ? You're gonna need to open RPC ports, all ports related to AD traffic, etc. You're gonna swiss cheese your firewall doing that.
Pash wrote: » How is he swiss cheesing his firewall if he is using proper access policies? Stateful firewalls it's always src dst port/service allow/deny. Putting a device that will typically be accessed through the public domain on a DMZ is perfectly fine, unless I am missing some fundamental reason why not.
HeroPsycho wrote: » Gotta ask... Why put the BES in the DMZ? You're gonna need to open RPC ports, all ports related to AD traffic, etc. You're gonna swiss cheese your firewall doing that. From the Internet, you need to allow in TCP443. You don't need any additional ports for that.
Compare salaries for top cybersecurity certifications. Free download for TechExams community.