Network topology recommendations
Last updated
Last updated
As discussed in Data One offers multiple deployment options. Data One services can run on a variable number of nodes, depending on available resources and environment-specific performance constraints.
It is recommended that all such nodes, plus the database nodes and any storage server nodes hosting shared file systems used by Data One, are located in one or more separate subnets, accessible only to administrators, with just the required firewall traversal routes allowed.
For more information on Data One own firewall traversal route requirements please refer to .
For more information about DMZ traversal please refer to and other reference sections on the DMZ Gateway component throughout the provided documentation.The above recommendations are NOT enforced by the product at runtime. They are provided here as a reminder of basic security best practices, generally aimed at reducing the attack surface; all the network topology hardening activities applicable to Data One are in charge of the customer’s own system administration team.