troubleshooting Question

New network Deisgn

Avatar of avineshp
avineshpFlag for South Africa asked on
Network ArchitectureCiscoRouters
11 Comments1 Solution986 ViewsLast Modified:

My company is busy changing ISP's and we are busy with a network re-design.

Basically we have the following set of equipment are try to make the best use of it together with a secure design:

We have:
1 x Cisco ASA 5520
1 x Cisco ASA 5510
1 x AstroFlowGuard (Bandwidth manager)
2 x Barracuda Web Filters
1 x Barracuda Load Balancer (To load balance the web filters)
And other email and web servers that will be in the DMZ

Basically what I have come up with is using the 5520 as my main firewall with 2 x DMZ's, 1 x Inside and 1 x Outside. On the Inside interface I have placed the LoadBalancer with will be connected to the MPLS VRF (where all 60 of my sites hang off). The loadbalancer will the point to the 2 Barracuda Web Filters, which will inturn have thier default gateway set to the AstroFlowGuard (Bandwidth manager). In the Second DMZ all my email and web servers will be hosted. If I then set a default route on the ASA to point to the AstroFlowguard's IP and then set Astroflowguard to point to my "real" breakout router, will this work. As I can't figure out a way to get the bandwidth manager to work as it needs to be setup in a transparent bridge mode to work correctly.

I have tried to put together a diagram as to how i think this should work however I am not sure if there is a better/ smarter way of achieveing a better design.

Any help will be greatly appreciated as I am at a loss at the moment.

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 11 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 11 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros