Download presentation
Presentation is loading. Please wait.
Published byGloria Hamilton Modified over 9 years ago
1
Bridge through Firewall Revised August 8th 2001
2
Objectives Run Bridge through the firewall but block SQL port 1433 for inbound traffic. There should be no SQL initialization from DMZ zone.
3
Firewall Setup
4
Bridge Source = DMZ CORE Destination = Central Core DSM Bridge WV Gateways UDP 162, ICMP Ping SQL 1433 FIREWALL Host A UDP 161 - Traps Common Services CORE Host WV Gateway Common Services SQL Port Outbound traffic – Bridge Pulls information from inside the firewall WV Gateway DMZ Core Central Core
5
Inbound Rules SQL Port Blocked from DMZ to Private
6
Outbound Rules SQL Port Open for Private to DMZ traffic
7
Active Connections
8
Denials List SQL Port Blocked from DMZ, initialization denied
9
Bridge Configuration RGT1N = Core outside Firewall DAWYA01D = Core Inside the Firewall Bridge Running inside Firewall
10
Destination Core Core Inside the Firewall Status in sync with DMZ core
11
Maintaining Status Any Status updates in DMZ core will be propagated to the Central CORE. Be selective on Bridge Rules – DMZ core should be relatively small as it would need to transmit all worldview notification Source CORE not in the same server as the Bridge Instance. Not best practice
12
WorldView Notification
13
NodeView from Private Network 7774 unblocked for outbound traffic
14
AgentView with Routing 7774 unblocked for outbound traffic
15
Questions and Answers Any questions?
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.