firewall Policy/Rule

235
2
a month ago
Sunnywaygis
New Contributor III

Hello There, I am working on reconfiguring Enterprise environment after loss of GIS servers. Our IT team has requested to submit firewall Policy/Rule with source /destination IP and port details.  

 Our configuration is One Portal/One Hosted GIS server with One Image Server (federated). This is what I came up with, just want to make sure that mapping for port looks ok and if there is anything else required.  

 Appreciate your feedback. 

Thanks

Sunnywaygis_0-1713477797897.png

 

0 Kudos
2 Replies
MichaelJenkins
Occasional Contributor III

It would depend on where your firewall sits in your configuration, and where your web adaptors are hosted.

If you have a web adaptor in the DMZ (outside the firewall) and the other servers inside the firewall, the the source would be the web adaptor server and your destinations would be Portal, GIS and Image servers.

Users of your services will access the web adaptor server on port 443, and then that server will access the other servers.

GISP
Sunnywaygis
New Contributor III

Thanks Michael for your feedback. Our environment is not external facing. Here is how it's configured: 

  • Portal Server and Web adaptor on the same server
  • GIS Server (Hosted) and Web adaptor on the same server
  • GIS Server (Image) and Web adaptor on the same server

Thanks

0 Kudos