Great Circle Associates Firewalls
(October 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Multi-interface firewalls
From: Mike Jones <mike . jones @ unifiedtech . com>
Organization: Unified Technologies, Inc.
Date: Tue, 07 Oct 1997 09:08:56 -0400
To: Peter Enderborg <pme @ abnamro-software . com>
Cc: firewalls @ greatcircle . com
References: <3439F025 . F97DA132 @ abnamro-software . com>

Peter Enderborg wrote:

> We need to set up an firewall with at least 8 ethernet interfaces, and
> it   is good if they are 100Mbit/s interfaces.
> Does it exist on the market ? Most of  the firewalls that I have seen
> had only 3 interfaces. Some whould be very
> easy to extend to 8, but what about the software ? I know that Linux
> chould do it, but what about Firewall-1
> on a sparc ? Any other good ideas ?

My company has implemented FW-1 on SPARC with 9 network interfaces for a
customer. I believe that all but 1 of them is 10 Mb/sec, though. If you're
serious about needing that kind of throughput, you're going to need a
pretty beefy machine. Sun recommends one processor per two 100Mbit
interfaces with their Quad Fast Ethernet card. Personally, I think that's
kind of overkill, but I'd still look at something like a 6-processor E3000
with a pair of Quad Fast Ethernet cards.



References:
Indexed By Date Previous: Re: Multi-interface firewalls
From: Peter Enderborg <pme @ abnamro-software . com>
Next: Re: dynamic address translation...
From: Eric Vyncke <evyncke @ cisco . com>
Indexed By Thread Previous: Re: Multi-interface firewalls
From: Peter Enderborg <pme @ abnamro-software . com>
Next: RE: Multi-interface firewalls
From: WALLY <wally @ microlan . com>

Google
 
Search Internet Search www.greatcircle.com