How to Make a Firewall Sandwich
- 05 February, 2002 13:14
- Comments
Here's a nice recipe for making a tasty, high-performance security checkpoint to replace a bland, low-performing single point of failure at the border between your network and the Internet.
FIREWALL SANDWICH - Serves one (1) enterprise gatewayINGREDIENTS2 load-balancing switches, fresh 1GB type is best 2 to 60 firewalls, to taste (see number four below) 1 bushel of Cat 5 Ethernet wiring, separated 1 PC with firewall management software 1 Internet connection 1 ounce of freshly prepared security policy Parsley sprigs.
DIRECTIONS
1. Sprinkle security policy until it coats the entire enterprise.
2. Install management software on a PC. Use it to create the rules the firewalls will use to filter traffic coming in and going out of the network. Set aside with Internet connection.
3. At edge of the network, put in 1 load-balancing switch so that the end connecting to the Internet faces out. (The load balancers will make sure no single firewall is overloaded with traffic. They will also move traffic to a working firewall if another firewall breaks down.) Let sit.
4. Place firewalls behind switch. Depending on taste, place as few as 2 or as many as 60 or more firewalls in the sandwich. More firewalls will yield higher performance and less chance of failure.
5. Interconnect firewalls using Cat 5 Ethernet wiring (see picture). Also, connect firewalls to management PC for configuration.
6. Put second load-balancing switch behind firewalls.
7. Connect the switches to the firewalls with remaining Cat 5 wiring.
8. Plug Internet connection into the front switch and enterprise connection into the back switch.
9. Plug in power supplies. Turn all boxes on.
10 Decorate with parsley sprigs.
11. Serve in a cool room, 24/7.
Bon appA©tit!
Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.
- Bookmark this page
- Share this article
- Got more on this story? Email CIO
- Follow CIO on twitter
-
FTC warns makers of background checking apps
-
Time to get Agile
-
QLD govt demands answers after pay glitch
-
Monash Uni reduces IT teams after consolidation project
-
iPad initiative for pupils in WA
-
Managing Data Storage in the Public Cloud
With organisations struggling to control costs, they face increasing demands to keep pace with explosive data growth and ever-changing regulations. To address these challenges, storage industry professionals are increasingly turning to cloud computing and cloud storage solutions. Read on. -
A Governance Guide for Hybrid SharePoint Migrations
Cloud-based computing represents a powerful new option for managing enterprise content, offering increased flexibility, efficiency, and reduced cost for IT infrastructure, data storage, and applications. However, for a variety of business and technical reasons, most organisations will take a phased approach to adopting cloud-based services, which will require them to continue to maintain their on-premises SharePoint environments during the transition. This white paper, written by Chris Beckett from SharePoint Bits, discusses some of the benefits and risks of hybrid SharePoint deployments, and presents governance considerations that are essential for ensuring a successful migration. -
8 reasons why Citrix NetScaler beats the competition
Application delivery controllers (ADC) are one of the most critical elements of cloud infrastructures and enterprise data centre architectures. ADCs strongly impact performance, scale and security of the entire application environment, so it is extremely important for IT leaders to choose the right one.
-
QuickBooks 2008 for Dummies
-
Implementing Biometric Security
-
The All-new Switch Book
-
Mastering AutoCAD 2002 Premium Edition (Includes CD-ROM)
-
Mac OS X Tiger All-In-One Desk Reference for Dummies
-
Excel 2003 Just the Steps for Dummies
-
PHP and Mysql
-
Objects, Abstraction, Data Structures and Design
-
Foundations of Net-enhanced Organisations Wiley International Edition











Comments
Post new comment