Ask the Expert

Documenting traffic flow and control in a demilitarized zone

I'm designing a DMZ and want to document traffic flow and control. If my boss wants to see subnet flow, what traffic is allowed in on what port, what are some examples of that?

    Requires Free Membership to View

I assume that you are using a firewall that is showing traffic between your DMZ and the Red Zone (general Internet) that would document the traffic coming from the subnet to the rest of the world. Mandriva has just released their latest security product, Mandriva Multi Network Firewall 2, that should have intrusion detection and show traffic between the two zones.

However, your question was specifically how to document traffic flow and control -- and that is more a function of a network analyzer. I suggest you look at Ethereal, an open source network protocol analyzer. Ethereal can capture network data and store it in a capture file. This probably will best serve your needs.

This was first published in June 2005

There are Comments. Add yours.

 
TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: