Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Hardening a DC/Domain for DMZ deployment

Status
Not open for further replies.

Dinkytoy

IS-IT--Management
Jun 14, 2007
147
GB
Hi,

We're currently building a new domain for deployment in our DMZ. It's required due to a need for a SQL cluster. Our plan is to create a new forest and domain and setup a one way trust from the LAN domain to the DMZ domain.

The trust aside, does anyone have any tips or advice for hardening the DC(s) in the DMZ somewhat for added protection?

There does seem to be little information about this out there.

Thanks.
 
R u needing an exposed SQL server only? if so, maybe the use of an ISA server(to hide the SQL cluster), along with the SQL cluster in the DMZ is all you would need. And as Pat stated; the SECURITY CONFIG WIZARD is your friend.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top