Please start any new threads on our new site at https://forums.sqlteam.com. We've got lots of great SQL Server experts to answer whatever question you can come up with.

 All Forums
 SQL Server 2005 Forums
 SQL Server Administration (2005)
 Forward all SQL traffic through a single point.

Author  Topic 

Tamerz
Starting Member

2 Posts

Posted - 2007-06-15 : 11:16:54
Hello, we are trying to find a way to send all SQL traffic from multiple machines in a DMZ trough only one point. This way the firewall doesn't need to be opened to each and every machine.

This may be a simple question but I have never done it before. Any recommendations?

Thanks in advance.

rmiao
Master Smack Fu Yak Hacker

7266 Posts

Posted - 2007-06-15 : 15:01:55
You can connect those sql servers to single switch on dmz, then only need to open port on the switch.
Go to Top of Page

readysetstop
Posting Yak Master

123 Posts

Posted - 2007-06-15 : 16:14:18
Um... that's what a firewall does. It routes everything through one point... the firewall!

If your goal is to only create one RULE on your firewall, then rmiao's answer applies. You'll have to create a separate segment for your SQL machines, and allow the whole segment through the firewall.

I think you may get a better answer on a networking board rather than a SQL board. This is more of a TCP/IP question than a SQL question.

Good luck.

____________________________________________________________________________________
"Believe in those who are seeking the truth. Doubt those who say they have found it." -Andre Gide
Go to Top of Page

Tamerz
Starting Member

2 Posts

Posted - 2007-06-15 : 16:27:12
I guess I explained myself wrong. Here is what I want to happen:

I don't want ANY incoming ports opened on the firewall to the inside network. I want the incoming port to be on one of the machines in the DMZ. The other DMZ machines will then send their SQL data to this machine. I want the database server on the inside network to connect to the open port on the one DMZ machine. So basically I want that one outside machine to act as some type of proxy between the inside database and the others.
Go to Top of Page

rmiao
Master Smack Fu Yak Hacker

7266 Posts

Posted - 2007-06-15 : 16:43:54
So sql servers are not in dmz? Then you need a middleware machine between sql and apps, not sure how you can set single machine to handle all kind of sql requests from different apps.
Go to Top of Page
   

- Advertisement -