Solved

Moving web servers into a DMZ?

Posted on 2016-10-25
3
23 Views
Last Modified: 2016-11-07
We've a pair of load balanced MS Windows 2008 R2 servers setup as a cluster for redundancy running IIS7.5.  And we host about 40 sites and domains.  We're using MS Load Balancer app.

I need to move these sites into a DMZ.  So my first question is do I have to change the ip address on the web servers and assign one from the DMZ subnet?  Or should I just be able to change the ip address of the sites and assign them an address from the DMZ.

I tried doing that today and it didn't work.  It worked fine on the server itself.  But when I try to access the site by ip it can't be found.

Let me  know if you need more info.

Thanks
0
Comment
Question by:mobot
  • 2
3 Comments
 
LVL 23

Accepted Solution

by:
Dr. Klahn earned 500 total points
Comment Utility
Presumably your web servers are now inside your LAN and the firewall has been told to route port 80 traffic to their current IP address.

Then the first step would be to reassign them new static IP addresses inside the DMZ, which you've done.

If the servers host multiple sites, access by IP address might not work correctly.  Virtual hosts are "routed to" internally in the server by the hostname section of the incoming URL.

When you moved the servers into the DMZ, was the firewall told to route port 80 traffic to their new IP address?
0
 

Author Comment

by:mobot
Comment Utility
I didn't move the actual IIS servers that host the sites into the DMZ.

What I did was add an ip address from the DMZ subnet to the cluster properties.  Then assign that address from the DMZ subnet to a site.  I made the appropriate changes to DNS,  DNS resolves correctly.
I can access the site in IIS Manager on the server.

But from my workstation's browser I can't access the site.

So I'm asking do I need to assign addresses from the DMZ subnet to the IIS servers before I add the sites to the DMZ?

Thanks
0
 

Author Comment

by:mobot
Comment Utility
Anyone???
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Introduction This article explores the design of a cache system that can improve the performance of a web site or web application.  The assumption is that the web site has many more “read” operations than “write” operations (this is commonly the ca…
When it comes to showing a 404 error page to your visitors, you do not want that generic page to show, and you especially do not want your hosting provider’s ad error page to show either. In this article, I will show you how to enable the custom 40…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…
You have products, that come in variants and want to set different prices for them? Watch this micro tutorial that describes how to configure prices for Magento super attributes. Assigning simple products to configurable: We assigned simple products…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now