help redesigning the network and securing the edge (firewall, ips, ids) - Overclock.net - An Overclocking Community
Forum Jump: 

help redesigning the network and securing the edge (firewall, ips, ids)

 
Thread Tools
post #1 of 2 (permalink) Old 08-23-2013, 07:01 AM - Thread Starter
New to Overclock.net
 
Sparta's Avatar
 
Join Date: Oct 2006
Location: Illinois
Posts: 105
Rep: 5 (Unique: 4)
My current network setup looks like the following:

ISP modem --> Cisco 2611xm --> managed 3550 switch --> vlans

Since I will be setting up a public facing web and email server, I decided that my network security needs improvement before they go live. I built a pfSense box which I would like to configure to perform Firewall, IPS, and IDS duties. I believe I have 3 options on its placement: before the router, after the router, or replacing the router with it. I would appreciate any insight and suggestions.
Thanks

Current setup details:

ISP modem:
Configured as a bridge just to perform the rj11 to rj45 hand-off

2611xm:
Routing
NAT
ACLs
basic firewall functions

3550:
layer 3 enabled
inter vlan routing
DHCP
ACLs

Vlans:
Guest wifi
private lan
private servers
Public servers (coming soon)
management PC (SNMP, Solarwinds, ect.)

Quote:
Originally Posted by Le_Loup
Something about the # 2 alot, 2 items, #2, and the roman numeral II, and rep is also 2
AND a core "2" duo! DDR "2" sp2! So many 2's!!! Ahh attack of the 2's!
Sparta is offline  
Sponsored Links
Advertisement
 
post #2 of 2 (permalink) Old 08-23-2013, 07:29 AM
New to Overclock.net
 
beers's Avatar
 
Join Date: May 2009
Location: Kansas City, MO
Posts: 14,046
Rep: 893 (Unique: 710)
You could probably just phase out the 2611XM at this point, the pfsense box would just end up routing packets between interfaces anyway, and you are already using layer 3 switching for inter-vlan routing.

beers is offline  
Reply

Quick Reply
Message:
Options

Register Now

In order to be able to post messages on the Overclock.net - An Overclocking Community forums, you must first register.
Please enter your desired user name, your email address and other required details in the form below.
User Name:
If you do not want to register, fill this field only and the name will be used as user name for your post.
Password
Please enter a password for your user account. Note that passwords are case-sensitive.
Password:
Confirm Password:
Email Address
Please enter a valid email address for yourself.
Email Address:

Log-in



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Show Printable Version Show Printable Version
Email this Page Email this Page


Forum Jump: 

Posting Rules  
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off