Deploying applications in DMZ

Hello all,
 
I think I have my machines setup the way I want them to run!!!! :-) 
 
EXT ISA - Firewall Mode only
            DMZ (WEB machines and DNS only)
INT ISA -Caching/Integrated
            INT NETWORK (EXCHANGE, SQL)
 
So far so good no major glitches yet!  Publishing rules seem to work
well.
 
Just two questions this time!
 
1.      What would be some common packet filters leaving the DMZ heading
toward the INT ISA?
I had port 80 coming into the INT ISA box but did not see a reason for
that and removed it.
 
2.      From the internal network, how can I use VSS to prop new content
to the web servers?
I'm unable to get the admin tool point to a server in the DMZ for
deploying applications.
Are there other tools that would pass info from INT NET to DMZ for
deployment of new pages?
 
Thank you,
 
 
Joseph
 
 
 
            

Other related posts: