two VLANs end two different PIXs as gateway
Posted on 2006-04-05
My LAN network is composed of 1 3560G catalyst switch used as a distribution where my routers, servers are connected and a 2950 catalyst switch used as access switch for computers and printers. A new company, composed of only 5 people, will soon merge with us but, as our internal policy, they will have to use a different gateway (PIX firewall) to go out internet. Both PIX firewall are connected to the 3560G but in two different VLANs. So the network will have:
VLAN1 192.168.150.0 gatway1/PIX1 IP: 192.168.150.1
VLAN2 192.168.160.0 gatway2/PIX2 IP: 192.168.160.1
My internal DNS is on VLAN1 (192.168.150.6) , how can I configure PIX2 to resolve the domain-name using my internal DNS ? Do you think it`s better using the 3560G switch as L3 to route between the two VLANs or the PIX works just fine for that? In case I use the PIX as L3, does it need to have two internal interfaces (besides the external to internet) on two different VLANs in order to route?
Thank you for help!!!!