[Kolab-devel] Configuration in PREFIX/etc/kolab/kolab-ssl.cnf ?

T. Ribbrock itsef_admin at itsef.com
Thu Jan 26 16:02:56 CET 2006


On Thu, Jan 26, 2006 at 05:44:10AM +0100, Martin Konold wrote:
> I recommend a more secure and sensible setup.
>
> User -- Internet - DMZ - Intranet - Kolab
>
> In the DMZ put an Apache reverse proxy.
>
> The client certificate check MUST be in the DMZ on the reverse proxy
> NOT with
> Kolab! (*)

Interesting idea - thanks for the suggestion! I'll definitely look into
that.

I'm just wondering about why you place the Kolab server on the inside -
being the mail server, shouldn't it be located in the DMZ anyway?

Cheerio,

Thomas




More information about the devel mailing list