Hi William,
Thank you.
I need your second diagram:
The Internet------->WAF and Reverse Prox(Public IP)---------->Apache(Private IP)
But, which program doing Reverse Proxy? Apache?
On Saturday, March 6, 2021, 09:01:38 AM GMT+3:30, William Dumangeng Jr <wbdumangeng@xxxxxxxxxxx> wrote:
Hi;
The WAF and web server can reside in a single host and the reverse proxy in another host or you can also install WAF with the Reverse proxy (Nginx).
The Internet------->Reverse Prox(Public IP)---------->WAF and Apache(Private IP)
or
The Internet------->WAF and Reverse Prox(Public IP)---------->Apache(Private IP)
On Fri, Mar 5, 2021 at 7:26 PM Jason Long <hack3rcon@xxxxxxxxx.invalid> wrote:
> Hello,
> I want to launch a ModSecurity or an IDS\IPS as a reverse proxy and I have some questions. I'm a beginner and I'm thankful if anyone help me. My goal is:
>
> The Internet --> WAF or IDS\IPS --> Web Server
>
> My questions are:
> 1- On WAF server, I need Apache too?
> 2- Should I set the web server public IP address on the WAF server and it forward all requests to my web server with a local IP address? Or both servers need separate public IP address? Or WAF needs a public IP and Web server need a local IP?
>
> Excuse me if my questions are odd.
>
> Thank you.
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
> For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx
>
>
--
>
> William B. Dumangeng Jr.
>
> ISTMS/NTMD
>
> Department of the Interior and Local Government
>
> DILG-NAPOLCOM Center
>
> EDSA cor. Quezon Avenue
>
> West Triangle Quezon City
>
> PH
>
> Tel. No. 876-3454; local 5506
>
>
>
>
>
>
---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx
William B. Dumangeng Jr.ISTMS/NTMDDepartment of the Interior and Local GovernmentDILG-NAPOLCOM CenterEDSA cor. Quezon AvenueWest Triangle Quezon CityPHTel. No. 876-3454; local 5506