From: barret bonden on

Need to setup a web server in a DMZ such that
1) computers on the INSIDE interface can , on a microsoft LAN, browse to and
copy files FROM the server in the DMZ to themselves in the inside
2) If the server in the DMZ is hacked it will prevent attack on the inside
computers.


I need to:
1) know this is possible
2) be pointed to instructions on how to set this up
3) understand HOW this is done
4) understand if the Inside and DMZ are on differnt subnets if the ASA is
doing routing as well as passing Netbios packets.As I understand the world
if you allow netbios from and to subnets you are making security holes that
undermine the value of the DMZ