Firewall without DMZ

Posted on 2011-03-04
Last Modified: 2012-05-11
what the use a firewall if do not have DMZ e.g Juniper SSG 350m

can we create DMZ for above firewall

how to confirm IDS feature are there?

Question by:sportsboy
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
LVL 33

Expert Comment

ID: 35039020
You can use a firewall without a DMZ.   By dropping a firewall inline between 2 network, you can watch and control traffic between the 2 networks.  Not just for blocking traffic but also for packet inspection and threat detection....  
LVL 35

Expert Comment

by:Ernie Beek
ID: 35047622
The Juniper SSG 350m should have a DMZ interface: the ethernet0/1 interface is prebound to the DMZ security zone.

Author Comment

ID: 35085605
ethernet0/1 ???
Webinar June 1st - Attacking Ransomware  

The global cyberattack that corrupted hundreds of thousands of computer systems on May 12th had a face, name, & price tag that we’ve seen all too often in recent years: Ransomware. With the stakes – and costs – of a ransomware attack higher than ever, is your business prepared ?

LVL 35

Accepted Solution

Ernie Beek earned 500 total points
ID: 35093201
Yes, there should be at least for ports by default: ethernet 0/0-0/3

Author Closing Comment

ID: 35226543
LVL 35

Expert Comment

by:Ernie Beek
ID: 35226552
Glad I could help :)
Thx for the points.

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …
Finding and deleting duplicate (picture) files can be a time consuming task. My wife and I, our three kids and their families all share one dilemma: Managing our pictures. Between desktops, laptops, phones, tablets, and cameras; over the last decade…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question