Filter and Firewall
Left running head:
Chapter name (automatic)
772
Beta Beta
OmniAccess 5740 Unified Services Gateway CLI Configuration Guide
Alcatel-Lucent
SEMI-TRUSTED ZONE OR DEMILITARIZED ZONE
A Demilitarized Zone (DMZ) is a network attached to an internetworking device on
the border of a "trusted" and "untrusted" zones. This network typically comprises
the servers and related network resources that need exposure to the "untrusted"
zone without compromising security of a "trusted" zone.
A DMZ creates a buffer space between the Internet and the private network which
is accessed by both Internet and the internal network. A DMZ typically contains
the following:
• Web Server
• Mail Server
• Application Gateway
• E-Commerce Systems
Example of systems to place on a DMZ include Web servers and FTP servers.
Figure 23: Three Zone Network Topology