Re: Your idea's please- SBS Domain with a 2003 Server application

Tech-Archive recommends: Fix windows errors by optimizing your registry



I know Chris....I accidently posted one and then never realised it had gone
until I had posted the second...sorry mate.

The Product will not be open as a Web based product....it is an internal
product but is supported by a third party using VPN....via port forwarding
....not the usual ports for VPN.


--
Stu


"Cris Hanna [SBS-MVP]" wrote:

You have two threads going on this topic, which is generally frowned up

My question is, after reading your response: Is this a web based app? Are
you opening it to the world?

--
Cris Hanna [SBS-MVP]
-------------------------------------------------
Microsoft MVPs
Independent Experts (MVPs do not work for MS)
Real World Answers
---------------------------------------------------------
Please do not contact me directly regarding issues

"Stuart Smith" <stuartsmithz@xxxxxxx> wrote in message
news:C474B478-5C85-4DC3-B6E2-6EA2B3EE741F@xxxxxxxxxxxxxxxx
Hi Chris & Lanwench...

This server currently sits direct onto the router but the router has port
forwarding.... so my plan is to leave these ports open on the router but
point them to the SBS server and then route the ports on the SBS server to
the IPADDR of the 2003 server based Application within the LAN...thus
avoiding any restrictions by bringing it into the the LAN....how does that
sound....and do you agree with adding it using the normal routine of
adding a
PC to the Domain??
--
Stu


"Lanwench [MVP - Exchange]" wrote:

Stuart Smith <stuartsmithz@xxxxxxx> wrote:
I am installing a SBS server/domain into a business. They currently
have a 2003 Server that is hosting an application only. This does
not act as a domain serverbut purely hosts the application.

My usual installation of SBS goes along the text book install of
Router to WAN NIC on server on a separate IP Segemnt to the LAN NIC
on the SBS server which then serves all of the LAN with the DOMAIN
logons/ Email etc etc.

What is the best method of incorpoarating this 2003 Server into the
LAN side of the SBS domain for security and access to the application
still but without compromising external access to the application
server by the company that supplied this product.

What kind of inbound access does this server/application require, and
from
whom/where? Also, what do your LAN users need to access on this box?

Once you've got AD, you want to be very careful about what you allow into
your network. If this server requires public access from the internet at
all, it should likely be put in a DMZ (get a good firewall appliance that
has an OPT/DMZ port). In fact, unless you're using ISA, and perhaps even
if
you are, a good firewall appliance is a must. I personally like
SonicWALLs.






.



Relevant Pages

  • Re: Can only connect to local RWW, over internet cannot
    ... This if from my working LAN. ... I am testing this tool from my own lan and says 4125 port is closed, ... It has a hardware sonicwall firewall. ... move to the server. ...
    (microsoft.public.windows.server.sbs)
  • RE: Some technical errors
    ... If the SMTP server is not running on port 25 TCP it is not a public ... Manager - Computer Assurance Services BDO Chartered Accountants & ...
    (Security-Basics)
  • Re: SRV RRs support in Internet Explorer?
    ... The port number could be implicit (i.e. ... At any point in time, a server could fail ... can't effectively LB or backup because NSs cache the records for the TTL ... I still don't see how SRV records would help backup or LB. ...
    (microsoft.public.win2000.dns)
  • Re: DNS Server Name
    ... You should NOT have port 80 forwarded to anything on your LAN. ... I would enable NetBIOS over TCP/IP since the single NIC should be your LAN ... When you run the CEICW, on the Web Server Certificate page, you should enter ... telnet SBSserverNetBIOSname 25 ...
    (microsoft.public.windows.server.sbs)
  • Re: Still cant connect to RWW or OWA remotely
    ... I get 'cannot find server or dns error' on both ... TCP [port number]> to open the ports. ... As for error messages when I fail to access RWW with the laptop, ... network, no connection seems possible. ...
    (microsoft.public.windows.server.sbs)