Well other than violating every principle of internet
security and defeating the purpose of having a dmz and
giving external users a clear path into your network
there is no reason not to make an external webserver
part of your internal domain. If you want to create a
one-way trust, add the internal domain to the external
server and set it up to trust your internal domain. Do
not allow your internal domain to trust your external
webserver.
--- "Miles, David" <[EMAIL PROTECTED]>
wrote:
>
> If I understand you correctly you have a stand alone
> IIS server in your DMZ
> and you need to authenticate accounts in a Domain on
> your internal network?
> Why don't you just make it a member server in the
> domain containing the
> accounts? Why add another domain and create a
> trust?
>
> -----Original Message-----
> From: Daniel Morone
> [mailto:[EMAIL PROTECTED]]
> Sent: Friday, June 23, 2000 1:48 PM
> To: [EMAIL PROTECTED]
> Subject: [FW1] NT trust
>
>
>
> Need to do a one way trust from dmz nt iis box to
> internal nt4 domain across
> fw-1 4.0 SP1. dmz nt box is standalone NT4. Any
> ideas?
>
>
>
>
============================================================================
> ====
> To unsubscribe from this mailing list, please
> see the instructions at
>
> http://www.checkpoint.com/services/mailing.html
>
============================================================================
> ====
>
>
>
================================================================================
> To unsubscribe from this mailing list, please
> see the instructions at
>
> http://www.checkpoint.com/services/mailing.html
>
================================================================================
__________________________________________________
Do You Yahoo!?
Get Yahoo! Mail - Free email you can access from anywhere!
http://mail.yahoo.com/
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================