Chapter 2
Deployment Planning
Scenario 2: Basic Installation with DMZ
Figure 2-3
Private Network with DMZ
78-18003-02
For information about how to configure your adaptive security appliance for this
deployment, see Chapter 5, "Configuring the Adaptive Security Appliance."
In this scenario, the adaptive security appliance is used to protect network
resources located in a demilitarized zone (DMZ) in addition to the inside network.
A DMZ is a separate network located in the neutral zone between a private
(inside) network and a public (outside) network.
HTTP clients on the private network can access the web server in the DMZ and
can also communicate with devices on the Internet.
Adaptive Security
Appliance
Printer
Personal computers
Private
(Inside) Network
Outside Network
(Internet Connection)
Internet
ISP
Router
PO
WE
Cis
48
R
co
AS
VD
C
A SS
C-0
5
Sta
7
tus
Sec
POW
ER
uri
ove
Ser
ty
r ETH
ERN
vic
ET
6
Ca
es
rd
Slo
5
t
4
3
2
co ns
ole
1
0
1
2
RE
SE
T
ASA 5505 Getting Started Guide
Scenario 2: Basic Installation with DMZ
DMZ
Web Server
Email Server
2-5