Why not add another NIC to FW1 to create a DMZ protected by the FW?
--- "Shubinsky, Slava" <[EMAIL PROTECTED]> wrote:
> I've seen an interesting architecture...
>
> Net---FW1----R----FW2---R---Internet
> |
> DMZ
>
> At first this seems to be a tighter security architecture,
> but at a closer look this might be wasteful especially if
> the two firewalls are the same type. Has anyone run
> into something like this? What are the general thoughts?
>
> Thanks!
>
>
> -
> [To unsubscribe, send mail to [EMAIL PROTECTED] with
> "unsubscribe firewalls" in the body of the message.]
>
__________________________________________________
Do You Yahoo!?
Bid and sell for free at http://auctions.yahoo.com
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]