Quote:
| Originally Posted by cnivas Thanks Scleros.... |
Unless S1 is connected to a DMZ port on the router, you're attempting to run two networks on the same physical media - it's all one network.
Your public "external" network needs it's own switching fabric and to do so you need a three interface router. Typically the way this is done is:
Interface 1 = External WAN Port
Interface 2 = Public LAN (DMZ) < Web server connects here
Interface 3 = Private LAN
You connect a switch1 to interface2. You connect a switch2 to interface 3 and then connect a switch3 to switch2. Your web server's external nic connects to switch1 and the internal nic connects to switch2or3.
But, this setup is still a major security risk for your LAN if the web server gets compromised. I'm not trying to be mean, but if your server hardening skills are commensurate with your networking skills, your server is likely to get compromised fairly quickly. This is basic stuff.
Quote:
| Originally Posted by ScottGem Its unlikely a small shop can match the bandwidth, security and maintenance provided by a WEB host for the cost |
I wholeheartedly agree with Scott - have your web site hosted.