- Joined
- Dec 29, 2006
- Messages
- 2,666
I was just wondering something and wanted to hear things from some SMEs.
I'm planning, for my home ESXi implementation, to use Untangle for my UTM solution, which will also be the gateway for the different networks I'm planning on implementing.
So I'm planning on using 3 VLANs:
VLAN 10 - For WAN connectivity. My cable modem will be attached to a switch on the VLAN, along with a physical port on my ESXi system, and one more to my wireless router. I'm going to disable the port on the switch going to the wireless router and will enable only when I'm having problems with Untangle.
VLAN 20 - My "production" network which I use for everything I do in my house. My network management IPs, DHCP scopes, pretty much everything is in this network.
VLAN 30 - This will be my DMZ network. Obviously, I don't want traffic from this network coming back into my production network without a specific FW exception, and I'm planning on running a web server and maybe a game server.
In looking at this, setup, is my production network in danger of being exposed? I haven't started hardening it yet and I'm just wondering if I'm putting myself in danger by doing so.
If this doesn't make sense, I can draw it up in Visio.
I'm planning, for my home ESXi implementation, to use Untangle for my UTM solution, which will also be the gateway for the different networks I'm planning on implementing.
So I'm planning on using 3 VLANs:
VLAN 10 - For WAN connectivity. My cable modem will be attached to a switch on the VLAN, along with a physical port on my ESXi system, and one more to my wireless router. I'm going to disable the port on the switch going to the wireless router and will enable only when I'm having problems with Untangle.
VLAN 20 - My "production" network which I use for everything I do in my house. My network management IPs, DHCP scopes, pretty much everything is in this network.
VLAN 30 - This will be my DMZ network. Obviously, I don't want traffic from this network coming back into my production network without a specific FW exception, and I'm planning on running a web server and maybe a game server.
In looking at this, setup, is my production network in danger of being exposed? I haven't started hardening it yet and I'm just wondering if I'm putting myself in danger by doing so.
If this doesn't make sense, I can draw it up in Visio.