cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
593
Views
18
Helpful
4
Replies

Regarding Router/Firewall

ncnaveen_arasu
Level 1
Level 1

                   HI team,

When Firewall is capable of doing routing and switching for a SOHO, why we need a router. Is there any specific advantage to use router alomng with Firewall.

Please clarify.

Thanks & Regards,

Naveen

4 Replies 4

sean_evershed
Level 7
Level 7

Hi,

Here are a few reasons why you need a router:

- The firewall only has ethernet ports. However your Internet or WAN link may come as an ADSL or Frame Relay connection. In this case you will need a router to terminate the connection.

- Firewalls are weak at policy based routing. A router is better suited for this purpose.

- Firewalls are not MPLS aware. If you want full MPLS functionality you will need a router.

- ASA firewalls do not support BGP as a routing protocol. You will need a router for this type of connectivity.

Cheers

Sean

Don't forget to rate all posts that are helpful.

shamax_1983
Level 3
Level 3

In addition to Sean's list of advantages, For a felxible inter-branch VPN connectivity, you can use DMVPN or any other WAN technology only avialable in routers.

Please rate this post if helpful.

Thanks

Shamal

HI Shamal thanks for the reply,

Can you please tell in brief what is DMVPM and when do we use it.

Thanks and regards,

Naveen

Can you please tell in brief what is DMVPM and when do we use it.

Dynamic Multipoint VPN (DMVPN)

http://www.cisco.com/en/US/docs/ios/12_2t/12_2t13/feature/guide/ftgreips.html

Dynamic Multipoint VPN (DMVPN) Design Guide

http://www.cisco.com/application/pdf/en/us/guest/netsol/ns171/c649/ccmigration_09186a008075ea98.pdf