G
Guest
Guest
Archived from groups: comp.security.firewalls (More info?)
Hi
_____
| |
<-----Internet--->| FW1 |<-----DMZ LAN---->| FW2 |<----internal net---->
|_____|
my boss had the idea to buy 2 cheap Firewalls (Pix 501) instead of
Pix 515 with DMZ. The DMZ server would be place into the LAN between.
THe first one would do NAT as well as the second one. The requirement
is to be able to do VPN.
Good or bad idea?
Please give me some strong reasons against this funny idea.
Hi
_____
| |
<-----Internet--->| FW1 |<-----DMZ LAN---->| FW2 |<----internal net---->
|_____|
my boss had the idea to buy 2 cheap Firewalls (Pix 501) instead of
Pix 515 with DMZ. The DMZ server would be place into the LAN between.
THe first one would do NAT as well as the second one. The requirement
is to be able to do VPN.
Good or bad idea?
Please give me some strong reasons against this funny idea.