DispersedNet
SiteMap
Active Directory
DHCP - TCPIP
Disaster Recovery
Install Windows
Proxy Server
Terminal Services
Internet Proxy Server
«Prev
Internet Proxy Server
Network Address Translation
NAT Protocol
Non-NAT Protocols
Functional Design Decisions
Nat-with-services
Selecting NAT Server
NAT Conclusion
Securing NAT Solution
Restricting Internet Traffic
Access Address Pools
Enhancing NAT Security
NAT Design Performance
Securing NAT Designs
Microsoft Proxy Server
Proxy Server Features
Design Decisions Solution (L3)
Integrate Networking Services
Functional ProxyServer Solution(L5)
Placing within Network
Integrate Proxy Server(L7)
Determine Client Requirements
Proxy Server Conclusion
Securing Proxy Server
Restrict Internet Access
Screened Subnet
Packet Filtering Firewall
Restricting Outbound Traffic
Proxy Server Access
Secure Proxyserver Conclusion
Proxy Server Design
Enhancing Outbound Availability
Enhancing a NAT Design for Availability and Performance
NAT Security
Strategy 1 - Dedicating a computer to NAT:
This strategy enhances availability by dedicating a computer to NAT
Preventing other applications that run on the same computer from becoming unstable, and ultimately requiring a restart of the computer.
Preventing other applications that run on the same computer from consuming system resources (like memory and processor time) and impacting NAT performance.
Strategy 2 - Selecting persistent internet connections:
Using a dedicated connection to prevent a lack of availability due to dial-up connections, such as busy signals. Dedicated internet connections may cost more, but DSL dedicated connection costs are comparable to high quality dial-up rates.
Dedicated connections eliminate the call setup time required to establish a non-persistent dial-up connection.
Strategy 3 - Providing multiple internet connections:
Redundant connections to the Internet can provide real-time failover in the event of network interface device failure.
Distributing the traffic across the multiple connections to the Internet. You can dedicate one connection for outbound and another for inbound communications. This increases available bandwidth for internet users accessing your internal network resources and improves performance for internal network users accessing the internet.