How to install/configure CRM behind a DMZ?

Hello,

I have installed a CRM instance without HTTPS or proxy option selected.

The instance is installed on a server which is then linked to a DMZ.

The person that installed the DMZ has done it in order to encrypt HTTP requests because my CRM is not configured under the HTTPS protocol.

Do I have to update/reinstall my CRM instance with the HTTPS protocol or proxy?

or

Is it ok for me to leave it the way it is? - if so will the DMZ handle the encryption process?

Just for my own general understanding, is DMZ used for managing inbound/incoming requests from the Ethernet and proxy for outbound/outgoing requests to hide them behind a single IP address?

I read some articles on the forum related to DMZ and they are helpful but I dont think they are specifically related to my scenario.

https://community.sagecrm.com/partner_community/b/hints_tips_and_tricks/archive/2015/10/02/sage-crm-7-3-more-thoughts-on-system-architecture-and-security.aspx

https://community.sagecrm.com/knowledgebase/w/onpremisekba/753.492-17038-installing-self-service-on-a-separate-server-to-crm/revision/1.aspx

I am not an expert in networking and thus, I desperately need a little bit of clarification so any comments are very welcome.

Thanks,

Michal

  • 0

    If the crm is installed on a Dmz, logically a client making a http request needs to be able to access the http request delivered as a response to his browser, if the up address is not accessible due to dmz, you would need a vpn token or vpn client in the client system, hope this helps