RE: [fw-wiz] Does a router like this exist?

From: Sloane, David (DSloane_at_vfa.com)
Date: 03/18/04

  • Next message: Marcus J. Ranum: "Re: [fw-wiz] Evolution of Firewalls"
    To: "Kyle King" <KKing@Bankshill.com>, "FW Wizards" <firewall-wizards@honor.icsalabs.com>
    Date: Wed, 17 Mar 2004 18:28:28 -0500
    
    

    Kyle,

    You should be able to do this with any router which can handle
    access-lists/acl's/etc. Depending on your bandwidth, a Cisco 2600
    series might be sufficient. Or a bbi-agent firewall-on-a-floppy should
    do the trick (see http://www.bbiagent.net) on whatever hardware you have
    available. That's probably the most cost-effective option (assuming you
    have dormant, spare pc's around).

    -David

    -----Original Message-----
    From: firewall-wizards-admin@honor.icsalabs.com
    [mailto:firewall-wizards-admin@honor.icsalabs.com] On Behalf Of Kyle
    King
    Sent: March 04, 2004 2:15 PM
    To: FW Wizards
    Subject: [fw-wiz] Does a router like this exist?

    Hello all again,

    Well, my last problem seems to have fixed itself as best as it can, but
    now I've got to find a stateless firewall/router that will allow me to
    block out every IP address but 1 or 2 that I say are ok.

    Basically, it was found out that I can't connect my VPN client through
    the firewall we have over UDP due to the fierwall being Stateful. So we
    are going to add another firewall or router that will allow the 3
    computers access to the internet, but I would also like to make it so
    that those 3 computers can only access the server that VPN is on. If
    they want to access the internet, they will go through the original
    firewall. Which reminds me....

    Has anyone ever heard of, or seen, a sort of manual switch for cat 5?
    What I mean is, a little box with like a light switch on it, that has 2
    lan connections heading into the back, and 1 connection coming out, that
    when the switch is moved between the two options, the physical
    connections line up with either of the two lan connections.

    Well, heres me thanking you people again for your help.

    Kyle King
    Banks-Hill Systems Ltd.
    email: KKing@bankshill.com
    Phone: (780) 488 6100 ext. 242
    Fax: (780) 488 4550
    www.bankshill.com

    _______________________________________________
    firewall-wizards mailing list firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Marcus J. Ranum: "Re: [fw-wiz] Evolution of Firewalls"

    Relevant Pages

    • Re: sharing a firewall?
      ... I did repost this message on the XP networking net board with a different ... >> computers to access the internet through it's firewall, ... > prices are about the same, and the switch should provide better performance. ... > router probably make them a bit higher in price than the SMC ...
      (microsoft.public.windowsxp.network_web)
    • Re: sharing a firewall?
      ... I did repost this message on the XP networking net board with a different ... >> computers to access the internet through it's firewall, ... > prices are about the same, and the switch should provide better performance. ... > router probably make them a bit higher in price than the SMC ...
      (microsoft.public.security)
    • Re: Load-balancing across four T1s on 2 routers
      ... since you have everything redundant (2 routers from an ISP + ... switches + firewall with failover) why ONE ISP? ... switch will then see 2 UN-equal cost default routes in its routing ... lose a T1 - you lose the "whole" router because of OSPF. ...
      (comp.dcom.sys.cisco)
    • Re: Load-balancing across four T1s on 2 routers
      ... switches + firewall with failover) why ONE ISP? ... switch will then see 2 UN-equal cost default routes in its routing ... Because they are not equal-cost routes, ... lose a T1 - you lose the "whole" router because of OSPF. ...
      (comp.dcom.sys.cisco)
    • Re: Cabling for network
      ... router is set correctly. ... >>to put a small switch in the distant office to help ... A switch will regenrate the signal ... >to routing, netmask, firewall or other causes. ...
      (microsoft.public.windows.server.networking)