Great Circle Associates Firewalls
(March 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Firewall and "single point of failure" issue
From: Arley Carter <ac @ twinds . com>
Date: Thu, 13 Mar 1997 10:40:09 -0500 ("EST)
To: uskanbye @ ibmmail . com
Cc: firewalls @ GreatCircle . COM
In-reply-to: <199703121926 . LAA11161 @ honor . greatcircle . com>

Removable disk drive bays and carriers can he had for ~ $100.  Put two of 
them in the firewall.  dd then does the trick of making a mirror image, 
assuming its a unix firewall.  

The only downside is the box must be offline to do the dd.  But a dd of a 
2 GB SCSI takes only about 20-30 minutes.  This solution also is not 
reliable with ide drives.  Of course the two drives must be the same 
geometry.

Cheers:
-arc

Arley Carter
Tradewinds Technologies, Inc.
Winston-Salem, NC  USA
email: ac @
 twinds .
 com
www: http://www.twinds.com



 On Wed, 12 Mar 1997 uskanbye @
 ibmmail .
 com wrote:

> In an environment with a single network connection to the Internet guarded
> by a firewall, what's the best strategy for providing fault-tolerance to
> this connection?
> 
> A few things we're looking at:
> 
> - aggressive service and response-time (< 2 hrs) requirements for firewall HW
> - a "standby" preconfigured firewall HW box that we'd plug in if primary down
> - in case of firewall failure, fall back on router packet filtering
>   without a firewall in place.
> 
> Comments?  What are you doing?
> 
>      --------KANSAS DEPARTMENT OF HEALTH & ENVIRONMENT---------
>      ---------------WWW.STATE.KS.US/PUBLIC/KDHE----------------
>      ----------Mills Bldg Suite 501 Topeka, KS 66612-----------
>      ---------Phone (913) 296-5643 FAX (913) 296-8943----------
> 


References:
Indexed By Date Previous: dmz
From: "Jeffrey L. Oliver" <oliver @ hg . uleth . ca>
Next: Re: [FW1] firewalls and sendmail
From: Jesse Whyte <jesse @ eac . com>
Indexed By Thread Previous: Re: Firewall and "single point of failure" issue
From: Andy Howard <achowar @ erenj . com>
Next: Re: Firewall and "single point of failure" issue
From: Colin Campbell <sgcccdc @ citec . qld . gov . au>

Google
 
Search Internet Search www.greatcircle.com