VMware VIEW COMPOSER 2.5 - ARCHITECTURE PLANNING EN-000350-01 Specifications Page 58

  • Download
  • Add to my manuals
  • Print
  • Page
    / 72
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 57
Figure 5-3. Multiple Security Servers
vCenter
Management Server
Microsoft
Active Directory
View
Connection
Servers
load balancing
View
Security
Servers
DMZ
external network
remote
View Client
load balancing
internal network
View Client
ESX hosts running
Virtual Desktop
virtual machines
You must implement a hardware or software load balancing solution if you install more than one security
server. View Connection Server does not provide its own load balancing functionality. View Connection Server
works with standard third-party load balancing solutions.
Firewalls for DMZ-Based Security Servers
A DMZ-based security server deployment must include two firewalls.
n
An external network-facing, front-end firewall is required to protect both the DMZ and the internal
network. You configure this firewall to allow external network traffic to reach the DMZ.
n
A back-end firewall, between the DMZ and the internal network, is required to provide a second tier of
security. You configure this firewall to accept only traffic that originates from the services within the DMZ.
Firewall policy strictly controls inbound communications from DMZ services, which greatly reduces the risk
of compromising your internal network.
Figure 5-4 shows an example of a configuration that includes front-end and back-end firewalls.
VMware View Architecture Planning Guide
58 VMware, Inc.
Page view 57
1 2 ... 53 54 55 56 57 58 59 60 61 62 63 ... 71 72

Comments to this Manuals

No comments