<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889139#M152790</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;As per your query, there is no preferred mode but it all depends on how your deployment&amp;nbsp;&lt;/P&gt;
&lt;P&gt;is going to be. There are some features which are not supported in transparent mode&lt;/P&gt;
&lt;P&gt;but it has advantage in the sense that it doesn't changes your existing network if deployed in the network. You can follow the below document to check features which you need to prefer according to your requirement :&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa92/configuration/general/asa-general-cli/intro-fw.html&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;rate if it Helps.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ankita&lt;/P&gt;</description>
    <pubDate>Wed, 22 Jun 2016 15:16:48 GMT</pubDate>
    <dc:creator>ankojha</dc:creator>
    <dc:date>2016-06-22T15:16:48Z</dc:date>
    <item>
      <title>Firewall mode of operation</title>
      <link>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889138#M152789</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;My question&amp;nbsp;sounds to be a fundamental question, however, I am looking for the expert advise.&lt;/P&gt;
&lt;P&gt;It is known that&amp;nbsp;Transparent Firewall will be faster (no IP address)&amp;nbsp;but less protection on other hand Static/Dynamic packet filtering, Application-layer, or Circuit-level will be slower&amp;nbsp;but more protection.&lt;/P&gt;
&lt;P&gt;Based on these facts, I would like to get an advise which mode is preferred considering security is higher&amp;nbsp;priority than complexity (creating an internal subnet(s)).&lt;/P&gt;
&lt;P&gt;Please, I will need to know what I will gain/loss with each mode configuration.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks, &amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:55:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889138#M152789</guid>
      <dc:creator>Serpent2010</dc:creator>
      <dc:date>2019-03-12T07:55:54Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889139#M152790</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;As per your query, there is no preferred mode but it all depends on how your deployment&amp;nbsp;&lt;/P&gt;
&lt;P&gt;is going to be. There are some features which are not supported in transparent mode&lt;/P&gt;
&lt;P&gt;but it has advantage in the sense that it doesn't changes your existing network if deployed in the network. You can follow the below document to check features which you need to prefer according to your requirement :&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa92/configuration/general/asa-general-cli/intro-fw.html&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;rate if it Helps.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ankita&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jun 2016 15:16:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889139#M152790</guid>
      <dc:creator>ankojha</dc:creator>
      <dc:date>2016-06-22T15:16:48Z</dc:date>
    </item>
    <item>
      <title>Thank you for your reply.</title>
      <link>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889140#M152791</link>
      <description>&lt;P&gt;Thank you for your reply.&lt;/P&gt;
&lt;P&gt;But how about if I have on two different physical interfaces two different inside subnets (e.x.172.x.x.x &amp;amp; 10.x.x.x), would the Transparent mode be bale to handle this&amp;nbsp;scenario?&lt;/P&gt;
&lt;P&gt;As I know, in&amp;nbsp;transparent mode&amp;nbsp;all interfaces (insides and outside)&amp;nbsp;shall be on same subnet.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jun 2016 22:40:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889140#M152791</guid>
      <dc:creator>Serpent2010</dc:creator>
      <dc:date>2016-06-22T22:40:27Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889141#M152792</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;In that case, you don't need transparent mode and can go for routed mode.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Rate if it helps.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ankita&lt;/P&gt;</description>
      <pubDate>Thu, 23 Jun 2016 06:17:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firewall-mode-of-operation/m-p/2889141#M152792</guid>
      <dc:creator>ankojha</dc:creator>
      <dc:date>2016-06-23T06:17:25Z</dc:date>
    </item>
  </channel>
</rss>

