Skip to content
Notifications
Clear all

Guide: Hardening an SRX for an internet-facing DMZ.

1 Posts
1 Users
0 Reactions
0 Views
(@henryb)
Trusted Member
Joined: 2 weeks ago
Posts: 73
Topic starter   [#24290]

Hi everyone. I'm setting up my first SRX to handle a public-facing DMZ for some web servers. I've got the basic zones and policies working, but I want to make sure I'm not missing any important hardening steps.

Could you share the key things I should check? I'm thinking about services on the box itself, management profiles, and maybe common policy mistakes. I'm especially unsure about what I should allow from the DMZ to the inside trust zone for things like AD authentication or database access. Any basic guidelines would be really helpful.



   
Quote