Best practice secure network deployment?


hello all, have few servers , planning rebuild our infrastructure more secure. have 3 physical machines, (2 standalone servers , vm host (esxi, might switch hyper-v - thoughts?)

i run exchange server, have ad, failover ad server, number of web hosts , couple of linux machines. have our work network on same subnet (all 1 location)

my question this: have asa , switches, modem goes asa, nat our static, asa goes else. how should rebuild network allow following. 1) sort of secure ad , web services accessible wan , allow things /owa acccess, ldap integration, etc. 2) secure internal systems (primary domain controller, workstations, etc) can browse internet etc, not exposed risks exposing other servers.

this might rely more on virtual networking, i'm not terribly familiar with, if recommendations made virtual networking setups in esxi or hyper-v i'd gladly on too.

thanks!

exhchange 2013 u may use edge transport server or can direcltly place cas server in dmz 

have here 

http://technet.microsoft.com/en-us/library/bb232184(exchg.80).aspx

http://technet.microsoft.com/en-gb/library/jj150569(v=exchg.150).aspx


http://www.arabitpro.com



Windows Server  >  Windows Server General Forum



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...