<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LAN design help and question in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427625#M662485</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you Will and will test your idea out first. Also, looking into trensparent mode configuration. My issue is these servers belongs to three separate vlan subnet.&lt;/P&gt;&lt;P&gt;campus switch&amp;gt;&amp;gt;&amp;gt;5520 firewall&amp;gt;&amp;gt;another switch&amp;gt;&amp;gt;servers. Looking to implement&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;as it stand currently: campus switch&amp;gt;&amp;gt;&amp;gt;servers. each with 1Gig speed to the switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 28 Jun 2010 20:37:32 GMT</pubDate>
    <dc:creator>Eric Boadu</dc:creator>
    <dc:date>2010-06-28T20:37:32Z</dc:date>
    <item>
      <title>LAN design help and question</title>
      <link>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427623#M662388</link>
      <description>&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;I have been instructed to put firewall in front of servers that connected to LAN switch. I do not manage this switch it manages by another team. All four servers are connected to separate VLAN on the switch with 1Gig speed. Server A: 10.10.5.x. Server B: 10.10.10.x. Server C: 10.10.15.x. Server &lt;span class="lia-unicode-emoji" title=":anguished_face:"&gt;😧&lt;/span&gt; 10.10.20.x &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Does anyone configure this scenario before?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;I don’t see how I can make this work by putting firewall in-between. &lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Current design:&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;ISP router/firewall&amp;gt;&amp;gt;&amp;gt;LAN switch&amp;gt;&amp;gt;&amp;gt;Servers. This looks fine to me.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Propose requirement: Cisco firewall 5520 will be use.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;ISP router/firewall&amp;gt;&amp;gt;LAN switch&amp;gt;&amp;gt;firewall&amp;gt;&amp;gt;&amp;gt;switch&amp;gt;&amp;gt;&amp;gt;Servers.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;How can I make this work? Please this is not a joke and need your advice.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;I don’t think it is possible.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Thanks,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNoSpacing" style="margin: 0in 0in 0pt;"&gt;&lt;SPAN style="font-family: Calibri; color: #000000; font-size: 12pt;"&gt;Eric&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:04:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427623#M662388</guid>
      <dc:creator>Eric Boadu</dc:creator>
      <dc:date>2019-03-11T18:04:52Z</dc:date>
    </item>
    <item>
      <title>Re: LAN design help and question</title>
      <link>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427624#M662426</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey Eric, Based on your message, I am not sure which problem you trying to solve:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) Multiple VLAN's into one firewall: you can used one interface with 802.1Q trunking on the firewall and switch to segment out the VLAN's. You have 4 x 1GB + 1x100Mb on the 5520 so you would probably have to configure at least one trunk on one of the Gb interfaces. You may have a bottleneck issue on the Gb interface so probably best to configure this for the two least used server subnets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) Speed limitation: The 5520 has a max FW throughput of 450 Mbps. So if you are worried about the 4 Gb servers maxing out the connection, then you have to increase the size of the firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In general, I am wondering myself about item 2 above, in a design which places a firewall at the core of the network. Firewall's just don't seem to be big enough (at a reasonable cost) to do this yet. If anyone has ideas, let me know.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Jun 2010 19:48:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427624#M662426</guid>
      <dc:creator>will</dc:creator>
      <dc:date>2010-06-28T19:48:58Z</dc:date>
    </item>
    <item>
      <title>Re: LAN design help and question</title>
      <link>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427625#M662485</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you Will and will test your idea out first. Also, looking into trensparent mode configuration. My issue is these servers belongs to three separate vlan subnet.&lt;/P&gt;&lt;P&gt;campus switch&amp;gt;&amp;gt;&amp;gt;5520 firewall&amp;gt;&amp;gt;another switch&amp;gt;&amp;gt;servers. Looking to implement&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;as it stand currently: campus switch&amp;gt;&amp;gt;&amp;gt;servers. each with 1Gig speed to the switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Eric&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Jun 2010 20:37:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/lan-design-help-and-question/m-p/1427625#M662485</guid>
      <dc:creator>Eric Boadu</dc:creator>
      <dc:date>2010-06-28T20:37:32Z</dc:date>
    </item>
  </channel>
</rss>

