Professional Documents
Culture Documents
The DMZ, which stands for DeMilitarized Zone consists of the portions of a corpo
rate network that are between the corporate intranet and the Internet. The DMZ c
an be a simple one segment LAN or it can be broken down into multiple regions as
shown in Figure F2. The main benefit of a properly-configured DMZ is better sec
urity: in the event of a security breach, only the area contained within the DMZ
is exposed to potential damage, while the corporate intranet remains somewhat p
rotected.
Configuring Oracle E-Business Suite 11i in DMZ
===============================================
Update Node Trust Level
-------------------------
Currently, three trust levels are supported:
Administrative
Servers marked as Administrative are typically those used exclusively by system
administrators. These servers are considered secure and provide access to any an
d all E-Business Suite functions.
Normal
Servers marked as Normal are those used by employees within a company s firewall.
Users logging in from normal servers have access to only a limited set of respon
sibilities.
External
Servers marked as External are those used by customers or employees outside of a
company s firewall. These servers have access to an even smaller set of responsib
ilities.
The default value for this profile option for all E-Business Suite middle tiers
is set to Normal.
Identify the external web tier in your Oracle E-business Suite 11i environment a
nd set the NODE_TRUST_LEVEL profile option value at the server level to External
.
Update List of Responsibilities
--------------------------------
To change the value of the Responsibility Trust Level profile option at the resp
onsibility level for a particular responsibility to external for using via exter
nal site. ..
To implement the URL Firewall configuration on the reverse proxy server, copy ur
l_fw.conf from $IAS_CONFIG_HOME/Apache/Apache/conf/url_fw.conf on the external m
idtier to the reverse proxy host.