Best practice secure network deployment?
hello all, have few servers , planning rebuild our infrastructure more secure. have 3 physical machines, (2 standalone servers , vm host (esxi, might switch hyper-v - thoughts?)
i run exchange server, have ad, failover ad server, number of web hosts , couple of linux machines. have our work network on same subnet (all 1 location)
my question this: have asa , switches, modem goes asa, nat our static, asa goes else. how should rebuild network allow following. 1) sort of secure ad , web services accessible wan , allow things /owa acccess, ldap integration, etc. 2) secure internal systems (primary domain controller, workstations, etc) can browse internet etc, not exposed risks exposing other servers.
this might rely more on virtual networking, i'm not terribly familiar with, if recommendations made virtual networking setups in esxi or hyper-v i'd gladly on too.
thanks!
exhchange 2013 u may use edge transport server or can direcltly place cas server in dmz
have here
http://technet.microsoft.com/en-us/library/bb232184(exchg.80).aspx
http://technet.microsoft.com/en-gb/library/jj150569(v=exchg.150).aspx
http://www.arabitpro.com
Windows Server > Windows Server General Forum
Comments
Post a Comment