I think I misread your question. Are you saying firewall rules which direct appropriate traffic from the Internet directly to your CAS servers in the trusted zone instead of having your CAS servers in the DMZ?
On Wed, Mar 27, 2013 at 3:08 PM, Richard Stovall <[email protected]> wrote: > Just say no, and send your adamant admin the following: > http://lmgtfy.com/?q=exchange+2010+cas+in+dmz. (Make sure he clicks on > the VERY FIRST LINK.) > > Good luck. > > > > > On Wed, Mar 27, 2013 at 1:30 PM, Jimmy Tran <[email protected]> wrote: > >> Well the architect isn’t really an architect, just a system admin who >> is adamit about his design. The problem is, he doesn’t know anything about >> exchange 2010…**** >> >> ** ** >> >> Anyways, will a NAT rule from the firewall to the CAS work instead of an >> edge server?**** >> >> ** ** >> >> *From:* Oz Casey Dedeal [mailto:[email protected]] >> *Sent:* Wednesday, March 27, 2013 8:30 AM >> >> *To:* MS-Exchange Admin Issues >> *Subject:* Re: 2010 migration**** >> >> ** ** >> >> Change your architect obvious he does not know what he/ she is doing , >> sorry for coming staight like this but this is pretty exchange 101 , no >> Exchange server to be placed in DMZ ( edge is exception**** >> >> ** ** >> >> Classis configuration would be all inside **** >> >> ** ** >> >> 2 cas& hts combined**** >> >> 2 mbx in a DAG**** >> >> ** ** >> >> ** ** >> >> Now there it depends it could be all 3 roles in a single server , >> stretched DAG etc. all depends on what you have and how you like to do it. >> **** >> >> If you R me a side I can share some design Visio with you later on today >> so you get clear picture**** >> >> ** ** >> >> Good luck**** >> >> Oz**** >> >> ** ** >> >> >> >> On Wednesday, March 27, 2013, Jimmy Tran wrote:**** >> >> My question is for the new 2010 design. My architect wants to put the 2 >> CAS servers in the DMZ and 2 MBX/HT in the Domain/Trust zone. When we do >> that I get a lot of WinRM errors in the EMC and topology errors. When I >> move the CAS into the save trust zone as the MBX/HT all the errors go >> away. After reading a lot of KB’s, it looks like Microsoft doesn’t >> recommend putting the CAS in the DMZ.**** >> >> **** >> >> What do you guys have setup and recommend? Do you guys segment the CAS >> and HT/MBX networks?**** >> >> **** >> >> TIA,**** >> >> **** >> >> Jimmy**** >> >> --- >> To manage subscriptions click here: >> http://lyris.sunbelt-software.com/read/my_forums/ >> or send an email to [email protected] >> with the body: unsubscribe exchangelist**** >> >> >> >> -- **** >> >> **** >> >> ** ** >> >> --- >> To manage subscriptions click here: >> http://lyris.sunbelt-software.com/read/my_forums/ >> or send an email to [email protected] >> with the body: unsubscribe exchangelist**** >> >> --- >> To manage subscriptions click here: >> http://lyris.sunbelt-software.com/read/my_forums/ >> or send an email to [email protected] >> with the body: unsubscribe exchangelist >> > > --- To manage subscriptions click here: http://lyris.sunbelt-software.com/read/my_forums/ or send an email to [email protected] with the body: unsubscribe exchangelist
