External monitoring from the inside?

We recently ran into a small item of note on our network and we are looking for a way to mitigate the problem. I have an good idea of what we could do but wanted to see if anyone else had a better solution.

Here's the scenario:

We run OpManager 7 internally (internal IP scheme). We need to be able to monitor a website from the outside (external NAT IP). I know you can't physically loopback traffic on the same interface or at least we are not setup to do so at this time. Does anyone have any ideas?

My theory is to open a switchport on an isolated DMZ to all ICMP echo (or other OPMAN protocol?) traffic but it does open a gaping hole in our network and puts our server/software at risk.

All servers and user workstations are on separate vlans behind the firewall.

Thoughts?
LVL 2
technowonderAsked:
Who is Participating?
 
msguruCommented:
I can think of two options:-
1) use an external (e.g. internet) proxy to run the URL check through (dependant on your software being able to accept a proxy for this website only)
2) use a second internet connection (e.g. cheap ASDL/DSL connection) to run this specific website test - you'll need to add routes to the monitoring server/PC to force it to go out this second internet connection.

Best of luck!
0
 
msguruCommented:
Hi technowonder, any update on your issue?
0
 
technowonderAuthor Commented:
Yes, we're still mulling the issue over and looking for alternatives. Thanks for your suggestions.
0
 
Computer101Commented:
Forced accept.

Computer101
EE Admin
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.