We have a network which is shared between two departments (A and B). The
network has
two points of Internet access. One access point (assigned to Deptt. A) is
protected with a Bastion Host (TIS Toolkit 1.3) while the other point
(assigned to Deptt.B) is protected by acess-lists only. The default route
on the network is assigned to department B i.e non Bastion Host point of
access. Very recently, deptartment A has asked for a transparent access to
the Internet (Presently they have to log on to the Bastion Host on their way
to the Internet). It is my understanding that a transaparent firewall can
only be installed on the default route. Just wondering what option do we
have. Can we repalce the TIS Toolkit with Gauntlet ? Does it require default
route as well ? How about Janus, BlackHole etc. ? Any suggestions ?
|
|