GroupStudy.com GroupStudy.com - A virtual community of network engineers
 Home  BookStore  StudyNotes  Links  Archives  StudyRooms  HelpWanted  Discounts  Login
Gaps in Firewall/VPN Scenario [1:1838] posted 02/01/2001
[Chronological Index] [Thread Index] [Top] [Date Prev][Date Next] [Thread Prev][Thread Next]


I'm looking at a new firewall/VPN design to tighten up security in my
network  The proposed design will have one router with wan links to all of
my locations and an ethernet link to a PIX firewall. The PIX will have 2
other ethernet interfaces, one connecting to a DMZ (or isolation LAN if you
prefer) and the other connecting to another router. This final router will
connect via wan link to my ISP. The DMZ will house a web/email server and a
VPN concentrator.

There are still some pieces of this puzzle which are a bit fuzzy for me.
Will the PIX need to be routing between the ethernet segments, requiring
them to be on different subnets? From my understanding of how firewalls
work, they are essentially routers which can filter traffic at layer 3 and
up.  Is this right?

Thanks for your time,

haroldnjoe@xxxxxxxxxxxxx




Message Posted at:
http://www.groupstudy.com/form/read.php?f=1&i=1838&t=1838
--------------------------------------------------
You are reading GroupStudy's Associate Mailing List.  To unsubscribe follow
the directions on http://www.groupstudy.com/list/Associates.html