Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win


Getting a new firewall

Posted on 2004-10-25
Medium Priority
Last Modified: 2013-11-16
My home office firewall just died and looks like never coming back

I'm running off a UK broadband cable connection. I've just bought a Dlink DI-604 just to make sure I can get back on the net ASAP

I can get one of the following:

CISCO PIX 501 3DES Bundle (Chassis, SW, 10 Users, 3DES)

I thought I could put the DI-604 onto the cable modem and then untrusted users onto the DI-604, and isolate the development computers with the CISCO firewall for added security, so the WAN on the CISCO will plug into the LAN on the Dlink, and the WAN on the dlink into the broadband modem.

1. Any reason why this setup wouldn't work ?
2. Any reasons not to use a CISCO PIX in this configuration ?

Question by:plq
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
LVL 11

Accepted Solution

PennGwyn earned 664 total points
ID: 12402476
1. No.

2. No.
LVL 13

Assisted Solution

Caseybea earned 668 total points
ID: 12402583
Most people will use the "firewall" (i.e., NAT) capabilities of the D-link to provide security.     You are unique, given that you're actually purchasing a Cisco firewall product for your private network.   Impressive.

It sounds like you're planning on putting the "good" users behind the PIX, and everyone else in a DMZ.   This should work fine, so long as you understand the network subnets and such.        The PIX line of firewalls is one of the most stable and secure that I know of.    I don't think you'
ll have any problems.

Author Comment

ID: 12403171
Thanks very much for the feedback

I know the cisco inside the network is a bit extreme but I have computers the kids use, and I have sales people coming in now and again with all sorts of cr*p on their laptops. In addition if one or the other goes phut again I have a backup. Furthermore we VPN into clients networks quite a bit, so that can have a dedicated PC outside the cisco too.

One thing, I think the dlink will be a 192.168 address, does that cause any problems if the cisco people are on 10. and the dlinks on 192. ?.

Also more questions,
3. will the cisco act as a dhcp server and
4. would I need to put an windows server domain controller box inside the network.

Sorry for being so dumb at networking ! 500 points is a lot of beer money though !
Free Backup Tool for VMware and Hyper-V

Restore full virtual machine or individual guest files from 19 common file systems directly from the backup file. Schedule VM backups with PowerShell scripts. Set desired time, lean back and let the script to notify you via email upon completion.  

LVL 15

Assisted Solution

Yan_west earned 668 total points
ID: 12403901
No problem at all, the cisco will only route the traffic...

3: yes, the cisco act as a DHCP server..
4: and no, you do not have to install a windows server at all. the PIX is completly stand alone, and can act as a vpn device, and a dhcp server..

Author Comment

ID: 12404034
Marvellous. Thanks for your help. Splitting points..

Author Comment

ID: 12421596
And now its all working... didn't even need to RTFM !! thanks

Featured Post

Put Machine Learning to Work--Protect Your Clients

Machine learning means Smarter Cybersecurity™ Solutions.
As technology continues to advance, managing and analyzing massive data sets just can’t be accomplished by humans alone. It requires huge amounts of memory and storage, as well as high-speed processing of the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

For many of us, the  holiday season kindles the natural urge to give back to our friends, family members and communities. While it's easy for friends to notice the impact of such deeds, understanding the contributions of businesses and enterprises i…
WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
Internet Business Fax to Email Made Easy - With  eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, f…
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
Suggested Courses

609 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question