If your not using the CSS to load balance between firewalls I see now reason to put it outside. The CSS constantly sends keepalives to the servers it load balances for. I don't see any reason the packets should be inspected by the firewall. If the firewall gets overloaded and drops packets the CSS will mark some services as down or dying and will not send requests to that server even though it could handle the requests.
""Jason Forrester"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > All, > > I have a quick question regarding content switches. Should the content > switched be placed inside or outside of a firewall. I can not find any > documentation to support which is better. > > Thanks, > > Jason Forrester > CCIE 8748 Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=44748&t=44742 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]