I spent more than 8½ hours yesterday reconfiguring the Inner Drive network. I think other guys might have taken no more than an hour to do this. I do software; routers and DNS and DHCP and DSL are all hardware problems. I really don't enjoy doing hardware stuff but I'm glad I did it. Because now I know how.
The changes vastly improve our network topology, and will help when we install our new web/app server later this week. In the past, we used a Windows Server 2003 machine to bridge between our public interface and our private network. The server ran BlackIce Defender as a firewall, which means, as astute readers will notice right away, evil packets got all the way to the server before the firewall could have at them. The same server also ran our Websites, Exchange, and was the Active Directory catalog master.
Having all of these services (did I mention DNS as well?) on the public box is asking for trouble, as I found out.