Hey gang need some expert advise

If you have a big WAN, ATM DS3 connecting 6 cities, with a single internet
access point at a NAP where should you impliment your NAT/PAT? Our
"security" manger feels that we should have public IPs running in our DMZ
and our WAN from city to city. Then NAT/PAT into each loction. The other way
would be to have a DMZ at the internet access point, leave them public for
web servers and such, then NAT/PAT through the firewall for the rest of the
WAN.

At each city you would have frame over ATM tieing your rural sites into a
main site. Then come back down your ATM to the NAP for the internet. It just
seems like it would be easier to hack into each cities site since you have
public and private IPs flowing along the same ATM into the router?

HEEELP!

Thanks in advance,


Steve




Steve Smith.vcf

Reply via email to