<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Two tier firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147197#M359752</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Compared to what Microsoft wants it to be a disadvantage is that the Edge Server won't be acting as a security device. Also you'll have to create NAT's and ACL's on the backside firewall for connectivity to the corporate LAN. I personally don't see those as disadvantages (and neither do most security engineers), but Microsoft doesn't like it. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 22 Mar 2013 02:31:58 GMT</pubDate>
    <dc:creator>Collin Clark</dc:creator>
    <dc:date>2013-03-22T02:31:58Z</dc:date>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147188#M359743</link>
      <description>&lt;P&gt;Hi ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have to configuration for data center network with two tier firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our data centre will DMZ server and Microsoft Lync Server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Server team advise me to put DMZ servers between two firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So I need to NAT on front end firewall with DMZ LAN and Public IP addres.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;At Back end firewall also have to NAT ( internal LAN and DMZ second Interface)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check as below link: which design do you prefer?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://etherealmind.com/design-enterprise-dmz-firewall-clusters/" target="_blank"&gt;http://etherealmind.com/design-enterprise-dmz-firewall-clusters/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ko Htwe&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 01:17:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147188#M359743</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2019-03-12T01:17:19Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147189#M359744</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I usually do a DMZ between the firewalls. I recently did that with a Lync deployment and it works just fine.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Mar 2013 18:25:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147189#M359744</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-21T18:25:32Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147190#M359745</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Collin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can I used this design? please advise me.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/6/8/7/132786-desktop.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise me thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ko Htwe&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 00:28:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147190#M359745</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2013-03-22T00:28:13Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147191#M359746</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That will work, but it doesn't make much sense and makes it more complicated than it needs to be. Why have dual NIC's in the servers with one in each network? That will make it a routing mess on the servers. Why not have a single NIC in the server and place it in the 192.168.0.0/24 network?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 00:54:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147191#M359746</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-22T00:54:29Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147192#M359747</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Collin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This server is lync edge server. My idea is one network card for to NAT with public IP adddress ( 172.16.2.x NAT with Public IP ). One is for the Internal Firewall To NAT with internal network. (20.20.0.x NAT with internal IP 10.10.0.x).&lt;/P&gt;&lt;P&gt;Your suggestion is want to use one NIC with one IP address for DMZ server going to both firewall, is it ?&lt;/P&gt;&lt;P&gt;Please advise me, thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; Thanks,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Ko Htwe&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 01:49:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147192#M359747</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2013-03-22T01:49:11Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147193#M359748</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;By using one NIC in the server, you can accomplish the same thing as two NIC's and I think it keeps the design simpler.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 01:53:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147193#M359748</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-22T01:53:56Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147194#M359749</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Collin, I appreciated that.If I will do this design what will be cause the issue and what will have adavantages?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ko Htwe&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 02:16:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147194#M359749</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2013-03-22T02:16:25Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147195#M359750</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What do you mean by cause the issue?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 02:19:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147195#M359750</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-22T02:19:04Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147196#M359751</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Collin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I will use this desing, what is the disadvantages?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ko Htwe&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 02:27:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147196#M359751</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2013-03-22T02:27:25Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147197#M359752</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Compared to what Microsoft wants it to be a disadvantage is that the Edge Server won't be acting as a security device. Also you'll have to create NAT's and ACL's on the backside firewall for connectivity to the corporate LAN. I personally don't see those as disadvantages (and neither do most security engineers), but Microsoft doesn't like it. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 02:31:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147197#M359752</guid>
      <dc:creator>Collin Clark</dc:creator>
      <dc:date>2013-03-22T02:31:58Z</dc:date>
    </item>
    <item>
      <title>Two tier firewall</title>
      <link>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147198#M359753</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Collin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please check it this design, actually I propose this design. Can you advise me for advantages and disadvantages?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/9/8/7/132789-desktop2.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ko Htwe&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Mar 2013 02:57:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/two-tier-firewall/m-p/2147198#M359753</guid>
      <dc:creator>aung.htwe</dc:creator>
      <dc:date>2013-03-22T02:57:46Z</dc:date>
    </item>
  </channel>
</rss>

