Re: 2 firewalls 1 Internet connection

From: Volker Birk (bumens_at_dingens.org)
Date: 08/29/05


Date: 29 Aug 2005 22:05:14 +0200

Walter Roberson <roberson@ibd.nrc-cnrc.gc.ca> wrote:
> In article <1125338848.331725.139900@f14g2000cwb.googlegroups.com>,
> Brian <Brian@amphenolpcd.com> wrote:
> :Can I have two firewalls be "equals" behind our Internet access router?
> Only if they are configured for "failover" to each other, or they
> are configured in such a way that any given transaction is certain
> to be processed by only one of the two firewalls.

A third idea could be to have two (non packet forwarding between hardware
interfaces) VPN endpoints with one interface in the internal net and one
in the DMZ, respectively, which only are implementing VPN endpoints, no
services, nothing else.

Yours,
VB.

-- 
"Es kann nicht sein, dass die Frustrierten in Rom bestimmen, was in
deutschen Schlafzimmern passiert".
                                    Harald Schmidt zum "Weltjugendtag"


Relevant Pages

  • Re: TableAdapters and Transactions again!
    ... 'ITransTableAdapter' interfaces. ... Can I start a transaction on the first adapter in the loop and then pass ... EnlistInTransaction method on each TableAdapter. ...
    (microsoft.public.dotnet.framework.adonet)
  • Re: PIX and VLANs Revisited
    ... Walter Roberson wrote: ... interfaces, but if you look further you will find that it is handled as ... The current PIX 535 has this arrangement: ...
    (comp.security.firewalls)
  • Re: PIX 525, how many interfaces?
    ... Walter Roberson wrote: ... interfaces, not sure about mixing the cards though. ...
    (comp.dcom.sys.cisco)