Can someone give me the benefit of their advice on the following....
Hope this makes sense !
A server in Server / Gateway mode gets the benefits of more security.
The PCs are protected behind the firewall. The server is currently in Private server mode. However, it is required that the server be put into a DMZ for access from the Internet.
How can this be implemented if you only have a single multiport router as per my awful diagram ?
http://www.prestige-branded-merchandise.com/My_Pix/Computer/Network_plan.pdfhttp://www.prestige-branded-merchandise.com/My_Pix/Computer/Network_plan.pngIs there anything else that can be done to increase the security of the server in this scenario if you don't have a second card / switch (I was thinking about this Bug/NFR
http://bugs.contribs.org/show_bug.cgi?id=6603 - Enable dummy LAN ethernet to be able to run SME as VPS in server/gateway) ?
Presumably in this scenario local PCs would not have access to file sharing or other 'local' services on the server and only 'Internet' services ?
In this instance there is a router to router VPN LAN which the PCs need to use - currently there is a static route for this on the router.
How will they be affected if a second network card is added and they are routed via the server ? Would this be affected if they were an 'active True IP' rather than just a private IP DMZ ?
Any answers gratefully appreciated.
B. Rgds
JC