Untangle Networks [home]


Go Back   Untangle Forums > General Forums > Networking

Reply
 
LinkBack Thread Tools
Old 07-09-2009, 01:42 AM   #1 (permalink)
Untanglit
 
Join Date: Jul 2009
Posts: 10
Default Untangle between LAN segments

I am now testing Untangle, so far it is a very smart product. I couldn't figure out how to deploy Untangle between LAN segments, e.g. between the user LAN and the server farm. Is it possible? would it be fast enough?
madasecurity is offline   Reply With Quote
Old 07-09-2009, 02:03 AM   #2 (permalink)
Untangle Ninja
 
WebFooL's Avatar
 
Join Date: Jan 2009
Location: Sweden (Eskilstuna)
URLs submitted: 57
Posts: 2,173
Send a message via MSN to WebFooL
Default

Hi and welcome to the forum,

What hardware is it runnig on and how big are the lan segments?

ex 5 servers and 20 users
or 100 servers and 500 users.
WebFooL is online now   Reply With Quote
Old 07-09-2009, 02:38 AM   #3 (permalink)
Untanglit
 
Join Date: Jul 2009
Posts: 10
Default UT betwixt LANs cont

Let's say 100 users on one side, and 5 servers (DC, DNS, SQL, Exchange) on the other. The DMZ is a seperate segment. The users are students, and I must take into account that someone from the user LAN may try to hack my servers.
I have a Checkpoint firewall as a bridge at the entrance to the server LAN, and want added protection of an IPS.
The UT will run on an HP Proliant ML110, quad, 4GB ram, w mirrored disk. If that is not enough, I can go to HP Proliant ML350 2 CPU, 4GB, SAS disks.
madasecurity is offline   Reply With Quote
Old 07-09-2009, 06:36 AM   #4 (permalink)
Untanglit
 
Join Date: Jul 2009
Posts: 10
Default

OK, I guess that if the two segments have different address ranges, and connected by a router, then $External_Net with the default value ("any") should be interpreted as the user LAN. In other words, the UT server should be deployed in the standard manner, between the router and the server LAN.
If, on the other hand, both segments are a single address range we should have a problem. The users IP's should be interpreted as internal, resuting either in the UT ignoring the users (not good), or else interpereted as spoofed addresses (also not good).
In the lab I simulated the second scenario, and in the variables defined External_Net
as the IP of my hacker platform. I have begun attacking a PC behind the UT. So far so good.
Does what I wrote make sense? Suggestions?
madasecurity is offline   Reply With Quote
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 08:09 AM.


© 2009 Untangle, Inc. All Rights Reserved.   SEO by vBSEO 3.3.2