Re: [fw-wiz] Concentrator inside of paired failover firewalls.



On Thu, 2006-09-14 at 14:55 -0400, Carson Gaspar wrote:

--On Wednesday, September 13, 2006 2:26 PM -0600 Aaron Smith
<smitha@xxxxxxxx> wrote:

Using a crossover cable is not a good idea.

http://marc.theaimsgroup.com/?l=firewall-wizards&m=110633896023171&w=2

Which is exactly the same as a switch failure, and if you can't handle
that, then your product/design is crap.

Unless you are intelligent and home the firewalls to different switches
(as we have done). If both switches fail then you have bigger problems
than firewall failover.

This is FUD.

How, exactly?

@@ron
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: [fw-wiz] scanning...
    ... >>new company as a network admin. ... Put switches into mirroring mode and sniff for addresses ... Don't forget DNS domain map and DHCP static map configs. ... transit devices that'll give 'em to you: firewalls, routers, switches. ...
    (Firewall-Wizards)
  • Campus LAN Core and Perimeter Firewalls
    ... I have some design questions regarding Campus networks and firewalls. ... If I have a Campus Core consisiting of 2 x L3 switches and I directly ...
    (comp.dcom.sys.cisco)
  • Re: [fw-wiz] Firewalls and 802.1q trunking
    ... ] I have personally seen other brands of switches exhibit the same ... ]> firewalls with arbitrary numbers of interfaces by means of ... ]> attacks against 802.1q separation that I should be aware of? ... ]> solutions seem to be relying on VLAN trunking. ...
    (Firewall-Wizards)
  • RE: Managed switches outside firewalls?
    ... If you just need to remotely access the device you can always use a terminal server at the back of the serial connection that way it's not even connected via ip from the "outside". ... Subject: Managed switches outside firewalls? ...
    (Security-Basics)
  • Re: [fw-wiz] Firewalls and 802.1q trunking
    ... I have personally seen other brands of switches exhibit the same ... > equipping firewalls with arbitrary numbers of interfaces ... > could be attacked and tricked into leaking packets between VLANs. ... Do you Yahoo!? ...
    (Firewall-Wizards)