We are currently setting up a new ZCS installation. (7.1.3) It will be located behind a firewall and I've found the articles about Split-DNS.
What I would like to do is setup two seperate network interfaces on the server. The first interface would get an IP address on our internal private network. The other interface would be in our DMZ and would be NAT'd to a public IP address for external web access and mobile devices.
Is this possible? Would I be better off just placing the entire server in the DMZ or on the private network? We're moving from an older home-brewed system where one box in the DMZ handled web access and another box in the DMZ relayed external messages to and from the actual mail server that is on the private network. I'd like to move away from that and have everything on one box but still be secure.