Re: Network Design

From: Lee Rich (lee.rich_at_wlga.gov.uk)
Date: 08/26/03

  • Next message: John R. Morris: "Re: block un-authorized computer in VLAN"
    To: <security-basics@securityfocus.com>
    Date: Tue, 26 Aug 2003 16:30:04 +0100
    
    

    Personally, I'd recommend the Netscreen range of firewalls. Good for VPN setups and can range from low end firewalls, for small networks, up to much bigger systems for large corporate networks.

    http://www.netscreen.com

    -Lee

    -----Original Message-----
    From: Jeff McClintock <lord_fiery@yahoo.com>
    To: security-basics@securityfocus.com <security-basics@securityfocus.com>
    Sent: 25/08/2003 08:50
    Subject: Network Design

    Hello,

    I've been tasked with creating my first ever network. Definitely
    exciting, but lots of stuff to know :) Given that, I wanted to run this
    by you guys and get some opinions. I work for a small firm of 20-25
    employees that use Windows 2000 and XP exclusively. They are planning to
    scale to a maximum of 50 people within a year. They have a full T1, and
    want to have an FTP server, VPN and OWA access. Web hosting is done by
    their ISP.

    Does this seem like a pretty secure set up for them:

    Internet -> Firewall -> (DMZ) FTP/OWA server (DMZ) -> DMZ Firewall ->
    Corporate LAN (with Exchange, employee machines, etc...)

    If so, any rec's on firewalls for something like this? Since it's a
    small firm, price is always an issue.

    thanks
    jm

    ---------------------------------------------------------------------------
    Attend Black Hat Briefings & Training Federal, September 29-30 (Training),
    October 1-2 (Briefings) in Tysons Corner, VA; the world's premier
    technical IT security event. Modeled after the famous Black Hat event in
    Las Vegas! 6 tracks, 12 training sessions, top speakers and sponsors.
    Symantec is the Diamond sponsor. Early-bird registration ends September 6.Visit us: www.blackhat.com
    ----------------------------------------------------------------------------
    ***************************************************************
    SAVE PAPER - THINK BEFORE YOU PRINT!
    I ARBED PAPUR - PWYLLWCH CYN PRINTIO!
    ***************************************************************

    ---------------------------------------------------------------------------
    Attend Black Hat Briefings & Training Federal, September 29-30 (Training),
    October 1-2 (Briefings) in Tysons Corner, VA; the world's premier
    technical IT security event. Modeled after the famous Black Hat event in
    Las Vegas! 6 tracks, 12 training sessions, top speakers and sponsors.
    Symantec is the Diamond sponsor. Early-bird registration ends September 6.Visit us: www.blackhat.com
    ----------------------------------------------------------------------------


  • Next message: John R. Morris: "Re: block un-authorized computer in VLAN"

    Relevant Pages

    • Re: Personal Firewall Recommendations
      ... On Sun, 17 Aug 2003, Chris wrote: ... >> personal firewalls might be recommended for a home system running ... Modeled after the famous Black Hat event in ... Symantec is the Diamond sponsor. ...
      (Security-Basics)
    • [fw-wiz] ISP firewalling of residential customers - was - About Port Forwarding, Apache and Firewall
      ... > firewalls, and kept there. ... to protect our customers (absence of funds and man-power always figure ... policy on my residential networks. ... The big issue from a business standpoint is that popular opinion seems to ...
      (Firewall-Wizards)
    • Re: Unexplained wan/lan activity
      ... >> firewalls and networks and such. ... A little while ago I noticed wan activity going on, ... > windows try a packet ...
      (comp.security.firewalls)
    • Firewall With Best Rule Organization Metaphor?
      ... Which firewalls have the best rule organization metaphor in their GUI for ... scale their rulesets to hundreds of rules and dozens of different networks ... rules that apply to logical groups of hosts or networks (these could ... Broad rules that you establish early in the ruleset can unintentionally ...
      (comp.security.firewalls)
    • Re: OT: Cisco Equipment
      ... I need to learn how to use some firewalls and stuff. ... Suppose you have a front door to your ... loads of networks, different infrastructures, and different systems. ... cisco box and it is definatly different!) ...
      (uk.comp.homebuilt)

  • Quantcast