Great Circle Associates Firewalls
(May 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Router advice needed
From: lafko @ ici . com (David A. Lafko)
Date: Tue, 3 May 94 10:48:49 EDT
To: firewalls @ greatcircle . com

My company is in the process of connecting to the Internet through one
of the commercial providers.  We've contracted for a 9.6 Kbps metered
service (at least initially).  We will design and build a firewall
prior to coming online.  I just attended Brent's seminar on building a
firewall and am now looking for some advice.

We are going to use a Telebit NetBlazer PN-1 for the external router.
Why?  It was VERY aggressively priced.  Also, it is a nice inexpensive
match for our low speed connection today.  If we go faster in the
future, it will be replaced.

Now I need an internal router between my peripheral net and interal
net.  I have 2 registered Class C networks (1 for peripheral, 1 for
internal).

What router can you recommend to use for the internal router?

I am considering 2 options now, but others will be considered.
1) Telebit Netblazer ST with 2 ethernet cards
	Pro: don't need to learn new filter specification language

2) PC running BSDI with screend
	Pro: better routing algorithms
	Con: 1 more filter spec language to learn, more system
	configuration

I'm assuming that both 1 and 2 will cost about the same (~$3500).

Can anyone give me some insight?  I also don't know some fundamental
things like:  Is screend bundled with BSDI?  Do they support it?

Also if someone could send me the proper Ethernet cards to get for the
BSDI machine, I would be appreciative.

If particular vendor recommendations are inappropriate for the forum,
please mail me directly.

--David Lafko (lafko @
 ici .
 com)

ps.  I don't yet have Internet access -- so thank you for pointers to
documents out on the net they are appreciated -- but I can't readily
download them.  I have the Firewalls-FAQ.


Follow-Ups:
Indexed By Date Previous: Firewalls Digest V3 #101
From: Karl Fox <karl @ MorningStar . Com>
Next: Re: Screend ports (other than ULTRIX and BSD/386)?
From: Geoff Mulligan <mulligan @ future . Eng . Sun . COM>
Indexed By Thread Previous: Re: Firewalls Digest V3 #101
From: Luther Garcia <luth @ sprintlink . net>
Next: Re: Router advice needed
From: "Rob Tanner" <tanner @ george . arc . nasa . gov>

Google
 
Search Internet Search www.greatcircle.com