Product manual

GFI EventsManager 2 Installing GFI EventsManager | 29
2.1.2 GFI EventsManager within a Demilitarized Zone (DMZ)
GFI EventsManager is able to monitor events generated by machines in a DMZ, from being installed
within the LAN or by being installed directly in the DMZ. Since a firewall or a router usually protects
this zone with network traffic filtering capabilities, you must make sure that:
The communication ports used by GFI EventsManager are not blocked by the firewall. For more
information on the communication ports used by GFI EventsManager refer to: http://go.gfi.c-
om/?pageid=esm_ports.
GFI EventsManager has administrative privileges over the computers that are running on the DMZ.
Important
GFI recommends to install GFI EventsManager directly in the DMZ as opposed to enabling
firewall ports and permissions to allow communication between LAN and DMZ
computers, servers and network devices.
Figure 3: The DMZ sits between the internal LAN and the Internet
A DMZ is the neutral network which sits between the “internal” corporate network and the “outside
world” (Internet). The deployment of GFI EventsManager in a DMZ helps you automate the
management of events generated by DMZ hardware and software systems; such as: