We do use a separate OSA for our DMZed linux servers. They are all on a
vswitch and the firewall stuff does some IP address translation so that
the address you see on the outside is not the same as the linux thinks
it is.

I would like to have a linux svm to act as a firewall between our
outside vswitch and inside vswitch and hypersocket but arguing with the
network/firewall/cybersecurity people isn't very productive. We let them
do the security out in their hardware.

/Tom Kern

Fred Schmidt wrote:
> 
> Hi fellow listers,
> 
> Our z/VM environment currently sits behind a firewall. We would like to
> allow one Linux guest to act as an Internet server. We do not however
> want to expose the other Linux guests or the z/VM environment itself to
> the outside world. We are using VSWITCH.
> 
> Is this possible? What options are there?
> 
> Do we require a separate OSA for the Linux guest in the DMZ?
> 
> As I'm not a comm's guy, please keep it simple. Thanks in advance.
> 
> Regards,
> Fred Schmidt
> Department of Business and Employment
> Data Centre Services (DCS)
> Northern Territory Government, Australia

Reply via email to