RE: Extending the internal Domain into the DMZ

  • From: "Joseph" <cismic@xxxxxxx>
  • To: "'[ISAserver.org Discussion List]'" <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 23 Jan 2002 20:23:33 -0800

Interesting use of the *** :=).  However, I'll look over your stuff
tonight.

Joseph

-----Original Message-----
From: Thomas W. Shinder [mailto:tshinder@xxxxxxxxxxxxxxxxxx] 
Sent: Wednesday, January 23, 2002 8:06 PM
To: [ISAserver.org Discussion List]
Subject: [isalist] Extending the internal Domain into the DMZ

http://www.ISAserver.org


Hey guys,

I've done some work today and figured out how to extend the internal
network domain into the DMZ, so that you can join a DMZ host to the
internal network domain and make it a member server of the internal
network domain. While this seems like a piss poor security design, there
might be reasons for doing this of which I am not aware.

I've put down some notes on how to do this at:

http://www.tacteam.net/isaserverorg/domain_dc.htm

If you know what you're doing, you should be able to make it work from
the information in these notes. If you're not sure you know what you're
doing, give me a few days and I'll create a large step-by-step how to
that goes through each step and includes screen shots, etc and have it
up on www.isasever.org/shinder 

Comments welcome on any errors in reasoning/implementation I've made.
Please no questions yet; wait for me to get the how to together than
then you can ask questions :-)

HTH,
Tom
www.isaserver.org/shinder


------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as:
cismic@xxxxxxx
To unsubscribe send a blank email to $subst('Email.Unsub')



Other related posts: