Friday, 26 January 2018

DMZ (demilitarized zone)

DMZ (demilitarized zone)

In computer networks, a DMZ (demilitarized zone) is a physical or logical sub-network that separates an internal local area network (LAN) from other untrusted networks, usually the Internet. External-facing servers, resources and services are located in the DMZ so they are accessible from the Internet but the rest of the internal LAN remains unreachable. This provides an additional layer of security to the LAN as it restricts the ability of hackers to directly access internal servers and data via the Internet.

Q: When do we need to configure DMZ host:
A
1. Do not know the port number of some kinds of application servers, and then can’t set port mapping. Such as network cameras, some database software, etc., then you can open the DMZ host.
2. Can’t play some games when the normal operation (e.g. StarCraft) and you can land normally, but can’t field a team, then you can open the DMZ host.
3. Some special sites can not open or can’t operate normally, such as certain online banking can’t be transferred, can‘t enter the verification code, etc., and you can also try to open the DMZ host.

As the following picture, I want to do DMZ Host for my IP Camera so that I can visit my IP Camera when I am not at home.

The steps are as below
1. Connect my IP Camera to my router.
2. Set a static IP which is in the same IP range of the router for your IP Camera 
4. Open your router's interface and click on Virtual Server (depend on your router's settings), then click on DMZ Host and fill in the IP address your IP Camera, then click OK to save settings.


No comments:

Post a Comment

Cisco Commands

Basic Configuration Commands Command  Purpose enable Logs you into enable mode, which is also known as user exec mode or privilege...