Networking Forums

Networking Forums > Computer Networking > Linux Networking > separate router and firewall

Reply
Thread Tools Display Modes

separate router and firewall

 
 
happy
Guest
Posts: n/a

 
      09-02-2004, 01:55 PM
i am going to crazy of thinking about how to separate router and firewall
more securely and better. i have a linux machine and cisco router.i want to
ask is the router behind the firewall against the internet or firewall
behind the router is the best.i want to doing NAT also.
please give me some hint.

thanks


 
Reply With Quote
 
 
 
 
Jose Maria Lopez Hernandez
Guest
Posts: n/a

 
      09-02-2004, 07:34 PM
happy wrote:
> i am going to crazy of thinking about how to separate router and firewall
> more securely and better. i have a linux machine and cisco router.i want to
> ask is the router behind the firewall against the internet or firewall
> behind the router is the best.i want to doing NAT also.
> please give me some hint.
>
> thanks
>
>


I would put the router behind the firewall, no matter where you are
doing the NAT thing. This is because routers can be fooled and hacked
as any other machine in your network can, and the firewall will protect
your router. But I don't think it's really a very important
consideration, you should use the configuration that suits better your
networking needs, the firewall will protect your network anyway.

--

Jose Maria Lopez Hernandez
Director Tecnico de bgSEC
(E-Mail Removed)
bgSEC Seguridad y Consultoria de Sistemas Informaticos
http://www.bgsec.com
ESPAÑA

The only people for me are the mad ones -- the ones who are mad to live,
mad to talk, mad to be saved, desirous of everything at the same time,
the ones who never yawn or say a commonplace thing, but burn, burn, burn
like fabulous yellow Roman candles.
-- Jack Kerouac, "On the Road"
 
Reply With Quote
 
Walter Schiessberg
Guest
Posts: n/a

 
      09-03-2004, 11:11 PM
happy wrote on 02.09.2004 15:55:
> i am going to crazy of thinking about how to separate router and firewall
> more securely and better. i have a linux machine and cisco router.i want to
> ask is the router behind the firewall against the internet or firewall
> behind the router is the best.i want to doing NAT also.
> please give me some hint.


It depends if you want to see all traffic directed to your IP or not. I
prefer to have the router in front of the firewall so my firewall alarms
me about the real thing. But if you're interested in detecting trends,
portscans etc. you may put your firewall first.

Walter
 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Router with separate LAN interfaces Geir Holmavatn Windows Networking 3 08-05-2005 09:11 PM
Router with separate interfaces Geir Holmavatn Network Routers 0 08-05-2005 05:59 AM
Separate modem and router public mike Broadband 1 01-03-2004 11:22 PM
share router yet keep networks separate Chris Smith Linux Networking 3 11-23-2003 10:13 AM
Does a ISDN Lan Modem require a separate firewall? Adam Lipscombe Home Networking 11 10-21-2003 12:06 PM



1 2 3 4 5 6 7 8 9 10 11