Seems like I'm missing something here. Why have a proxy outside the
firewall? What does that gain you? Are you utilizing it as just a cache?
CERN's proxy will proxy all info (ftp,gopher,wais,and http) if you have
sockd running on the bastion host.
----------
From: firewalls-owner
To: BAIM; Mario)
Cc: firewalls
Subject: Re: FW: Proxy WWW through firewall
Date: Wednesday, April 05, 1995 5:08PM
>
>
> Put the proxy *behind* the firewall, point the clients to it and proxy
over
> the firewall (using something like socks) .... or *not recommended* run
the
> proxy on the firewall, and point the clients to it. Why did you decide to
> put the proxy outside the firewall?
I disagree. The proxy should go outside the firewall: Cern reached
with a simple app gateway or via a bastion allowed IP address works
just fine. I don't want to use socks or a whole bunch of other
proxies for wais, gopher, http, ftp, etc.
sdw
--
Stephen D. Williams 25Feb1965 VW,OH (FBI ID) sdw @
lig .
net
http://www.lig.net/sdw
Senior Consultant, Manhattan Feb95- | 513-865-9599 FAX/LIG 513.496.5223 OH
Page
OO R&D AI:NN/ES crypto DBMS RPC/CS |2464 Rosina Dr., Miamisburg, OH
45342-6430
Firewall/WWW srvrs|ICBM/GPS: 39 38 34N 84 17 12W home, 40 47 00N 73 58 00W
wrk
Pres.: Concinnous Consulting,Inc.;SDW Systems;Local Internet Gateway
Co.;1Mar95
|
|