Depends what traffic you want to let into your private network. I'd put it
in the DMZ, if it were up to me...and not open up anything dangerous between
DMZ and LAN. Don't use anonymous FTP, either.
Steve Grosz wrote:
> I was wondering if there was a good reason to have a ftp server
> behind a firewall on a internal IP or would it be better to have it
> out in front with a public IP and software firewall on it. And then
> just route via dns to either one.
>
> Any suggestions would be appreciated.
>
> Thanks,
> Steve
|