18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 13: Setting Up Web Services<br />

An overview <strong>of</strong> Web services on <strong>Sidewinder</strong> <strong>G2</strong><br />

An overview <strong>of</strong><br />

Web services on<br />

<strong>Sidewinder</strong> <strong>G2</strong><br />

374<br />

Figure 157: Web access<br />

for users on your internal<br />

network<br />

The <strong>Sidewinder</strong> <strong>G2</strong> allows you to control connections between your internal<br />

network(s) and the World Wide Web. Using Application Defenses, you can<br />

configure the appropriate rules to protect a client (outgoing traffic), server<br />

(incoming traffic), or both behind your <strong>Sidewinder</strong> <strong>G2</strong>. You can also configure<br />

whether you will allow transparent, non-transparent, or both connections on a<br />

per-rule basis.<br />

Note: For information on configuring Application Defenses, see Chapter 6.<br />

The following two sections provide a summary <strong>of</strong> the three most common types<br />

<strong>of</strong> Web access that you can configure on the <strong>Sidewinder</strong> <strong>G2</strong>.<br />

Web access for users on your internal network<br />

Your internal users can access Web servers on the Internet or on a trusted<br />

network. In either case, access can be regulated using a Web proxy (HTTP or<br />

HTTPS), the Web proxy server, or both. When internal users have access to an<br />

external Web server, it is called "outbound traffic."<br />

internal network<br />

internal<br />

Web site<br />

Web server<br />

DMZ burb<br />

Web proxy<br />

Internet<br />

external network<br />

Web server<br />

Web site<br />

Access to your Web server by untrusted external users<br />

You can set up a Web server on a network controlled by your <strong>Sidewinder</strong> <strong>G2</strong>.<br />

The Web server should be contained on an isolated burb and network.<br />

Untrusted external users will be able to access this Web server only if a Web<br />

proxy is enabled on the <strong>Sidewinder</strong> <strong>G2</strong>. You can configure a Web proxy<br />

(HTTP/HTTPS), the Web proxy server, or both to allow external users passage<br />

through the <strong>Sidewinder</strong> <strong>G2</strong> to the Web server. When external users have<br />

access to an internal Web server, the traffic is called “inbound traffic.”

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!