07-31-2012 07:19 AM
Hello,
Is it necessary to put a firewall between your MPLS site or is it over kill if placing a firewall that’s already using MPLS VPN between sites?
Thank you all in advance
Jepoy
07-31-2012 07:25 AM
in my opinion MPLS VPN has already some sort of a security model in regards to traffic isolation/segregation via RDs, what a firewall could do however is to do a more intelligent work like threat detection/virus scanning etc.
07-31-2012 07:57 AM
I agree with you and I guest from population’s point of view, how many organizations are your using a firewall between their MPLS VPN sites.
08-04-2012 11:02 AM
Hello,
Your firewall is always better to be implemented from a Security Prespective to Protect your Local and DMZ Networks if you have any. the MPLS - VPN provides some sort of security but it's not enough if you have services to be protected in your Network.
Regards,
Mohamed
Sent from Cisco Technical Support iPad App
08-04-2012 09:10 PM
Hi,
Have you configured MPLS VPN or are you relying on the carrier?
If it's the carrier then it depends on how much you trust your carrier's security infrastructure as to whether you deploy a firewall as well.
You also need to consider what type of traffic traverses your WAN. If it is only encrypted to traffic such HTTPS, Secure FTP, SSL etc then this lessens the need for a firewall.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide