<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re:Intel EMA and Dual Zoning / Homing in Intel vPro® Platform</title>
    <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1685207#M12763</link>
    <description>&lt;P&gt;Hi Sylvester,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Greetings!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;We see that you are looking for Dual Homing / Zoning for utilizing both Internal trusted and External Untrusted communication as well with two NIC's.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;In your scenario, you are considering dual-homing the Intel Endpoint Management Assistant (EMA) server to allow it to communicate with both internal and external networks. Dual-homing involves configuring a server with two network interfaces (NICs), each connected to different networks, to facilitate communication across distinct network zones. Here’s how you can approach this setup:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Considerations for Dual-Homing Intel EMA Server:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Network Configuration:&lt;/P&gt;&lt;P&gt;Trusted Network NIC: Connect one NIC to the trusted internal network where the SQL database resides. This NIC will handle secure communications with internal resources.&lt;/P&gt;&lt;P&gt;Untrusted Network NIC: Connect the second NIC to the untrusted external network, which might be used for communication with the Swarm Server or other external services.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Security Implications:&lt;/P&gt;&lt;P&gt;Isolation: Ensure that the two networks are properly isolated to prevent unauthorized access from the untrusted network to the trusted network.&lt;/P&gt;&lt;P&gt;Firewall Rules: Implement strict firewall rules to control traffic between the two networks, allowing only necessary communications.&lt;/P&gt;&lt;P&gt;Access Control: Use access control lists (ACLs) and security policies to manage which services and ports are accessible on each NIC.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Routing and DNS:&lt;/P&gt;&lt;P&gt;Routing Configuration: Configure routing rules to ensure that traffic is correctly directed through the appropriate NIC based on the destination network.&lt;/P&gt;&lt;P&gt;DNS Settings: Ensure that DNS settings are configured to resolve internal and external addresses correctly, depending on the network interface.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Network Security:&lt;/P&gt;&lt;P&gt;VPN or Tunneling: Consider using VPNs or secure tunneling protocols to encrypt traffic between the EMA server and external services, enhancing security.&lt;/P&gt;&lt;P&gt;Monitoring: Implement network monitoring to detect and respond to any suspicious activity on either network interface.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Azure Configuration:&lt;/P&gt;&lt;P&gt;Azure Networking: Utilize Azure’s networking features, such as Network Security Groups (NSGs) and Virtual Network (VNet) configurations, to manage and secure traffic between the EMA server and other resources.&lt;/P&gt;&lt;P&gt;Subnets: Place each NIC in separate subnets to maintain clear separation between trusted and untrusted networks.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Steps to Implement Dual-Homing:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Provision Additional NIC:&lt;/P&gt;&lt;P&gt;In Azure, provision an additional NIC for the EMA server and attach it to the appropriate virtual network.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Configure Network Interfaces:&lt;/P&gt;&lt;P&gt;Assign IP addresses and configure network settings for each NIC according to the requirements of the trusted and untrusted networks.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Set Up Security Rules:&lt;/P&gt;&lt;P&gt;Define firewall rules and security policies to control traffic flow between the two networks, ensuring that only authorized communications occur.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Test Connectivity:&lt;/P&gt;&lt;P&gt;Test connectivity to ensure that the EMA server can communicate with both internal and external resources as intended.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Monitor and Maintain:&lt;/P&gt;&lt;P&gt;Continuously monitor network traffic and security logs to ensure the setup remains secure and functional.&lt;/P&gt;&lt;P&gt;By carefully configuring dual-homing for the Intel EMA server, you can achieve the desired connectivity while maintaining security across different network zones. If you encounter any challenges, consulting with network security experts or Azure support can provide additional guidance.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Please feel free to revert any further queries!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;&lt;P&gt;Arun&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;P&gt;intel.com/vPro&lt;/P&gt;&lt;BR /&gt;</description>
    <pubDate>Thu, 24 Apr 2025 21:31:08 GMT</pubDate>
    <dc:creator>Arun_Intel1</dc:creator>
    <dc:date>2025-04-24T21:31:08Z</dc:date>
    <item>
      <title>Intel EMA and Dual Zoning / Homing</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1680140#M12753</link>
      <description>&lt;P&gt;I have a scenario whereby my Intel EMA Server and my Swarm Server, which are both located in Azure, cannot simulataneously communicate with the SQL Database for security reasons.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to understand if it would be possible to dual zone / dual home the Intel EMA Server to allow connectivity both internally as well as externally. One NIC would be on a trusted network, and the other NIC will be on the untrusted network.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Apr 2025 08:54:31 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1680140#M12753</guid>
      <dc:creator>Sylvester</dc:creator>
      <dc:date>2025-04-03T08:54:31Z</dc:date>
    </item>
    <item>
      <title>Re:Intel EMA and Dual Zoning / Homing</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1685207#M12763</link>
      <description>&lt;P&gt;Hi Sylvester,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Greetings!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;We see that you are looking for Dual Homing / Zoning for utilizing both Internal trusted and External Untrusted communication as well with two NIC's.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;In your scenario, you are considering dual-homing the Intel Endpoint Management Assistant (EMA) server to allow it to communicate with both internal and external networks. Dual-homing involves configuring a server with two network interfaces (NICs), each connected to different networks, to facilitate communication across distinct network zones. Here’s how you can approach this setup:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Considerations for Dual-Homing Intel EMA Server:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Network Configuration:&lt;/P&gt;&lt;P&gt;Trusted Network NIC: Connect one NIC to the trusted internal network where the SQL database resides. This NIC will handle secure communications with internal resources.&lt;/P&gt;&lt;P&gt;Untrusted Network NIC: Connect the second NIC to the untrusted external network, which might be used for communication with the Swarm Server or other external services.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Security Implications:&lt;/P&gt;&lt;P&gt;Isolation: Ensure that the two networks are properly isolated to prevent unauthorized access from the untrusted network to the trusted network.&lt;/P&gt;&lt;P&gt;Firewall Rules: Implement strict firewall rules to control traffic between the two networks, allowing only necessary communications.&lt;/P&gt;&lt;P&gt;Access Control: Use access control lists (ACLs) and security policies to manage which services and ports are accessible on each NIC.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Routing and DNS:&lt;/P&gt;&lt;P&gt;Routing Configuration: Configure routing rules to ensure that traffic is correctly directed through the appropriate NIC based on the destination network.&lt;/P&gt;&lt;P&gt;DNS Settings: Ensure that DNS settings are configured to resolve internal and external addresses correctly, depending on the network interface.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Network Security:&lt;/P&gt;&lt;P&gt;VPN or Tunneling: Consider using VPNs or secure tunneling protocols to encrypt traffic between the EMA server and external services, enhancing security.&lt;/P&gt;&lt;P&gt;Monitoring: Implement network monitoring to detect and respond to any suspicious activity on either network interface.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Azure Configuration:&lt;/P&gt;&lt;P&gt;Azure Networking: Utilize Azure’s networking features, such as Network Security Groups (NSGs) and Virtual Network (VNet) configurations, to manage and secure traffic between the EMA server and other resources.&lt;/P&gt;&lt;P&gt;Subnets: Place each NIC in separate subnets to maintain clear separation between trusted and untrusted networks.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Steps to Implement Dual-Homing:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Provision Additional NIC:&lt;/P&gt;&lt;P&gt;In Azure, provision an additional NIC for the EMA server and attach it to the appropriate virtual network.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Configure Network Interfaces:&lt;/P&gt;&lt;P&gt;Assign IP addresses and configure network settings for each NIC according to the requirements of the trusted and untrusted networks.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Set Up Security Rules:&lt;/P&gt;&lt;P&gt;Define firewall rules and security policies to control traffic flow between the two networks, ensuring that only authorized communications occur.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Test Connectivity:&lt;/P&gt;&lt;P&gt;Test connectivity to ensure that the EMA server can communicate with both internal and external resources as intended.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Monitor and Maintain:&lt;/P&gt;&lt;P&gt;Continuously monitor network traffic and security logs to ensure the setup remains secure and functional.&lt;/P&gt;&lt;P&gt;By carefully configuring dual-homing for the Intel EMA server, you can achieve the desired connectivity while maintaining security across different network zones. If you encounter any challenges, consulting with network security experts or Azure support can provide additional guidance.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Please feel free to revert any further queries!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;&lt;P&gt;Arun&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;P&gt;intel.com/vPro&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 24 Apr 2025 21:31:08 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1685207#M12763</guid>
      <dc:creator>Arun_Intel1</dc:creator>
      <dc:date>2025-04-24T21:31:08Z</dc:date>
    </item>
    <item>
      <title>Re:Intel EMA and Dual Zoning / Homing</title>
      <link>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1687183#M12822</link>
      <description>&lt;P&gt;Hi Sylvester,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Greetings!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Thank you for contacting Intel, please feel free to revert for any further query!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Thanks &amp;amp; Regards&lt;/P&gt;&lt;P&gt;Arun&lt;/P&gt;&lt;P&gt;Intel Customer Support Technician&lt;/P&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 02 May 2025 23:01:38 GMT</pubDate>
      <guid>https://community.intel.com/t5/Intel-vPro-Platform/Intel-EMA-and-Dual-Zoning-Homing/m-p/1687183#M12822</guid>
      <dc:creator>Arun_Intel1</dc:creator>
      <dc:date>2025-05-02T23:01:38Z</dc:date>
    </item>
  </channel>
</rss>

