Accessing file share of DMZ Server from LAN
Posted on 2008-10-15
Hello All - We currently have all of our publically facing servers on our internal LAN (eek!), but we're moving them to a DMZ in the next few weeks. One of the last road blocks we're facing, is that these servers will need to have their file shares accessible from the LAN. Example: One of the servers is an FTP server, when a file gets dumped, our internal SQL Server will run a job that takes the file, processes it, and then deletes it. Currently, everything works fine, as both servers are on the LAN, both domain members, etc. so all the authentication works great.
How can we do this when the FTP server is in the DMZ and no longer part of the domain? I guess the 2 questions I need answered are: A) what ports will be required for this communication and B) What sort of authentication should we use? We don't want to allow DC functionality into the DMZ, so that's out of the question.
Any insight is appreciated! Thanks.