Deployment Option Example - From More Secure to Less Secure

For additional firewall security, you can install a perimeter server in a more secure area than Secure Proxy and set up your firewall to allow only connections initiated from a more secure area to a less secure area. The following diagram demonstrates a configuration with two perimeter servers:


Deployment Option Example - From More Secure to Less Secure

In this example, Secure Proxy is configured to use two perimeter servers that reside on remote computers: one on an external network (Perimeter Server A), and one in the internal network (Perimeter Server B). The firewalls are configured to allow only connections initiated from inside a more secure area (only an outbound hole in the firewall). When Secure Proxy is started, a connection is established from Perimeter Server B to Secure Proxy and from Secure Proxy to Perimeter Server A. Through these communication lines, SSL/TLS sessions can be established between clients and Secure Proxy, and between Secure Proxy and Connect:Direct® or Sterling B2B Integrator.