Great Circle Associates Firewalls
(November 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: connecting several networks to firewall.
From: "Frank K. Senter" <fsenter @ mail . state . mo . us>
Date: Wed, 8 Nov 1995 13:49:56 -0600 (CST)
To: Steve Matkoski <matkoski @ future . dreamscape . com>
Cc: Firewalls @ GreatCircle . COM
In-reply-to: <Pine.BSD/ . 3 . 91 . 951107123052 . 16675B-100000 @ future . dreamscape . com>

Build filters on each serial interface of the router so that only 
outbound packets originating from your corporate backbone are permitted.  
(Or permit only inbound packets destined to your corporate backbone).  If I 
understood correctly, you are only building connectivity from 
corporate backbone to each remote site, not trying to provide firewalling 
between the remote sites.

Frank Senter
Senior Information Specialist
Missouri Highway and Transportation Department
P.O. Box 270
Jefferson City MO 65102

On Tue, 7 Nov 1995, Steve Matkoski wrote:

> Hi, I am going to be using the IBM NetSP firewall for connecting several
> IP networks to our corporate backbone. I wanted to know the best way 
> to implement this? I want to use a multi-port router with several
> serial line and one ethernet port. The ethernet would connect directly to
> one port of the firewall. The other port of the firewall would connect to 
> the internal network. How do I connect all the serial lines to the router 
> without having them talk to each other? If I use static routes and eliminate
> any dynamic updates would this do the job? or do I have to set up 
> filtering between ports too? Any help appreciated!
> 
> -steve.
> matkoski @
 dreamscape .
 com
> 


References:
Indexed By Date Previous: Re: Spoofing ISDN
From: firewalls @ security-gw . mry . scruznet . com
Next: fwtk smap & multiple domains
From: gbrown @ cbn . org (Greg Brown)
Indexed By Thread Previous: connecting several networks to firewall.
From: Steve Matkoski <matkoski @ future . dreamscape . com>
Next: MORE about one-time-pads :)
From: "Marcus J. Ranum" <mjr @ iwi . com>

Google
 
Search Internet Search www.greatcircle.com