2 Replies Latest reply: Feb 25, 2014 3:37 AM by Viral Dhruv RSS

    DMZ Configuration for Sourcing

    Viral Dhruv

      Hi,


      We're configuring DMZ to enable Sourcing module for a bank to provide supplier access. One of the key concern for the bank is how much of DB is exposed through external web-server. Any thoughts on this one? Does the external web server (in DMZ) talk to DB directly without going through internal app server? Will the file upload hit DB directly without going through App Node?

       

      In case if the answers to above questions are yes then what are the alternatives available to avoid DB being exposed through external server directly?

       

      Thanks,

      Viral Dhruv

        • 1. Re: DMZ Configuration for Sourcing
          Asif Muhammad

          Hi Viral,

           

           

          Does the external web server (in DMZ) talk to DB directly without going through internal app server?

           

          Yes, It the external domain (DMZ) communicates directly with the DB without the intervention of internal apps node.

           

          The main objective of setting up a DMZ is to deploy security on the internal data. When setting up DMZ you have the option of including multiple firewalls so that data access is restricted. This is well explained in the below note.

           

          Please see:

          Oracle E-Business Suite R12 Configuration in a DMZ (Doc ID 380490.1)

           

           

          In case if the answers to above questions are yes then what are the alternatives available to avoid DB being exposed through external server directly?

           

          Please see:

          How To Configure Firewall When Remoting Container Sits Inside DeMilitarized Zone (DMZ) (Doc ID 1149388.1)

          Hints and Tips for Troubleshooting the URL Firewall (410-Gone on DMZ External Tiers) (Doc ID 460564.1)

           

          Thanksk &

          Best Regards,

          Asif

          • 2. Re: DMZ Configuration for Sourcing
            Viral Dhruv

            Hi Asif,

             

            Thanks for the quick response. Can you please let me know if we follow figure 9, does it require any software or license?

             

            Thanks,

            Viral Dhruv