locked
DMZ design decisions RRS feed

  • General discussion

  • I am currently migrating a customer with a 2007 Central Site with 2 PS (intranet and DMZ) and 10 Secondary Sites to SCCM 2012 SP1.

    so far we have migrated the internal primary site to 2012 and are busy installing parallell distribution points in the remote locations to replace the secondary sites.

    now I am wondering what the best solution would be to setup the DMZ in SCCM 2012?

    another Primary Site? then I would need a CAS also?

    another site system in the current intranet site with an MP, DP and SUP role ?

    I think a secondary site is out of the question because clients would still go to the primary site MP, isn't it?

    required functionality in the DMZ: sw update, Server deployment (physical and virtual), sw distrib, inventory

    there is a one way trust from the intranet domain to the DMZ domain (same forest) and 99% of the machines in the DMZ are domain joined

    looking forward to your advice!

    Wednesday, June 5, 2013 12:09 PM

All replies