troubleshooting Question

New network Deisgn

Avatar of avineshp
avineshpFlag for South Africa asked on
Network ArchitectureCiscoRouters
11 Comments1 Solution986 ViewsLast Modified:
Hi,

My company is busy changing ISP's and we are busy with a network re-design.

Basically we have the following set of equipment are try to make the best use of it together with a secure design:

We have:
1 x Cisco ASA 5520
1 x Cisco ASA 5510
1 x AstroFlowGuard (Bandwidth manager)
2 x Barracuda Web Filters
1 x Barracuda Load Balancer (To load balance the web filters)
And other email and web servers that will be in the DMZ

Basically what I have come up with is using the 5520 as my main firewall with 2 x DMZ's, 1 x Inside and 1 x Outside. On the Inside interface I have placed the LoadBalancer with will be connected to the MPLS VRF (where all 60 of my sites hang off). The loadbalancer will the point to the 2 Barracuda Web Filters, which will inturn have thier default gateway set to the AstroFlowGuard (Bandwidth manager). In the Second DMZ all my email and web servers will be hosted. If I then set a default route on the ASA to point to the AstroFlowguard's IP and then set Astroflowguard to point to my "real" breakout router, will this work. As I can't figure out a way to get the bandwidth manager to work as it needs to be setup in a transparent bridge mode to work correctly.

I have tried to put together a diagram as to how i think this should work however I am not sure if there is a better/ smarter way of achieveing a better design.

Any help will be greatly appreciated as I am at a loss at the moment.
 Network
ASKER CERTIFIED SOLUTION
ujitnos

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 11 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 11 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros