We do use a separate OSA for our DMZed linux servers. They are all on a vswitch and the firewall stuff does some IP address translation so that the address you see on the outside is not the same as the linux thinks it is.
I would like to have a linux svm to act as a firewall between our outside vswitch and inside vswitch and hypersocket but arguing with the network/firewall/cybersecurity people isn't very productive. We let them do the security out in their hardware. /Tom Kern Fred Schmidt wrote: > > Hi fellow listers, > > Our z/VM environment currently sits behind a firewall. We would like to > allow one Linux guest to act as an Internet server. We do not however > want to expose the other Linux guests or the z/VM environment itself to > the outside world. We are using VSWITCH. > > Is this possible? What options are there? > > Do we require a separate OSA for the Linux guest in the DMZ? > > As I'm not a comm's guy, please keep it simple. Thanks in advance. > > Regards, > Fred Schmidt > Department of Business and Employment > Data Centre Services (DCS) > Northern Territory Government, Australia
