Re: DMZ webserver portal question

Tech-Archive recommends: Fix windows errors by optimizing your registry



AD in the DMZ is 'generally' not a good idea. Key word is 'generally'.

--
Cary W. Shultz
Roanoke, VA 24012

WIN2000 Active Directory MVP
http://www.activedirectory-win2000.com
(soon to be updated!!!)
http://www.grouppolicy-win2000.com
(soon to be updated!!!)



"John" <dontmailme@xxxxxxxxxxxxxx> wrote in message
news:4344117c$0$10961$ba620e4c@xxxxxxxxxxxxxxxxx
> We have several webservers with several web base applications (total
> compatible for internet explorer, FireFox or others) in our dmz and want
> to
> make an "single sign on" portal (also web based) application for our
> internet customers. The goal is that a user will log in into the web
> portal
> and only see and use dedicated web applications. These application can sit
> on other webserver. Also, If the user close his browser, and open a fresh
> browser he must be logged in into the application automatically and
> securely.
>
> We are looking into setting up active directory in the dmz. Is this a good
> practice our a nightmare? And can this fulfill all our needs?
>
> Kind regards,
> John
> Ierland.
>
>


.



Relevant Pages

  • Re: Extranet Authentication
    ... Not really an IIS/Security question. ... in the DMZ and your Intranet, and punch holes in your Intranet Firewall ... I would suggest that you pose the question in an Active Directory ...
    (microsoft.public.inetserver.iis.security)
  • Re: DMZ webserver portal question
    ... > AD in the DMZ is 'generally' not a good idea. ... >> We have several webservers with several web base applications (total ... >> compatible for internet explorer, FireFox or others) in our dmz and want ... Also, If the user close his browser, and open a fresh ...
    (microsoft.public.win2000.active_directory)
  • Re: AD read only proxy for Windows Server 2003 REL2
    ... "Active Directory and the DMZ" in: ... you should avoid connecting AD to the DMZ. ... DCs, via the internet, which I'm not comfortable with. ... of our DMZs to support the external LDAP queries. ...
    (microsoft.public.windows.server.general)
  • Infrastructure Setup
    ... I need to place a windows 2000 server on the DMZ and have active directory on ...
    (microsoft.public.win2000.general)
  • Re: DMZ Server in LAN AD anmelden?
    ... vom Design her keinen Server in die DMZ packen der Domaenenmitglied der internen Domaene ist, sondern sich anders authentifiziert, StamdAlone ist oder in einem DMZ Active Directory. ... Wenn Du immer noch einen Client / Server mit AD Anbindung in der DMZ haben willst, ...
    (microsoft.public.de.german.windows.server.active_directory)