Introduction

Published: March 31, 2005

Windows Server System Reference Architecture (WSSRA) is an integrated set of service solutions based on architectural guidance for typical enterprise scenarios. This guide focuses on the design of the firewall and proxy services solutions.

The design was created using the guidance provided in the Firewall Services Blueprint. The designs detailed in this guide were formulated using real world scenario specifications, specifically the Centralized Data Center (CDC) and Satellite Branch Office (SBO) scenarios based on the Contoso business case study. These scenarios are outlined in the Introduction to Windows Server System Reference Architecture document, and a further level of detail is provided in the Lab Implementation of Windows Server System Reference Architecture document.

As described in the Firewall Services Blueprint, the following three elements of the solution are covered in this blueprint:

Perimeter firewall design: A firewall solution designed to protect the enterprise infrastructure from insecure network traffic originating from the Internet.

Internal firewall design: A second firewall boundary designed to protect the traffic between the semi-trusted network elements and the internal trusted elements.

Proxy design: The proxy solution provides a mechanism to provide secure and manageable outbound communications for hosts on the internal networks.

Each of these chosen technology solutions needs to meet specific service-level goals for design goals such as availability, security, and scalability. How these design goals are incorporated may either be implicit in the logical or physical design or they may be explained in separate sections later in this guide.

On This Page
Who Should Read This GuideWho Should Read This Guide
Knowledge PrerequisitesKnowledge Prerequisites

Who Should Read This Guide

This guide is written for information technology (IT) professionals who are responsible for the planning and designing of computer network infrastructure, including consultants, system architects, and others who are involved in the planning stages of application or infrastructure development across multiple projects.

Knowledge Prerequisites

The reader of this guide is expected to be familiar with the basic concepts of the following technologies:

Microsoft Internet Security and Acceleration Server (ISA Server).

Networking and firewall concepts and principals.

The uses of common network protocols and their TCP/IP ports.

For further information on these technologies, refer to the Firewall Services Blueprint.


**
**