Solved

Network Security and best Firewall configuration

Posted on 2011-09-04
4
397 Views
Last Modified: 2012-06-22
Hi Expert,

I am trying to design a secure network between two sites connect with each other via internet.

And i would like to ask How i can provide secure communication between them.

one site is under heavy load, it  needs  load balance( using two switches and routers)

the design will be like:
site 1 --- > Firewall --> Router -- > Internet

Site 2 :
interner ...>
Router 1 ---> Firewall1 --> Switch1 --> server1 , server 2
Router 2 ---> Firewall2 --> Switch2 --> server3 , server4

is this design good ? if not what are suggestions?

Regards configure firewall: can i used options like NAT, packet filter in addition to configure fw as vpn gateway at same time ?? ((i am little confuse in this points))

what will be best configuration to provide secure communication between sites?


more question, any help software to draw sketch design for such scenario instead of suing ms word

thanks





0
Comment
Question by:ang3lus
  • 2
4 Comments
 
LVL 1

Accepted Solution

by:
tommyeriksen earned 250 total points
ID: 36480667
I'd recommend to connect the two networks using a VPN-tunnel configured in your firewalls. You can use NAT on both sites if you want, but you will probably have to configure your firewall to allow the traffic you want between the sites. To draw up a scetch, I use Microsoft Visio.

If you want a simpler solution for just connecting some computers on different sites in a secure VPN-network, I'd recommend to use Logmein Hamachi. (www.logmein.com)
0
 
LVL 92

Assisted Solution

by:John Hurst
John Hurst earned 250 total points
ID: 36480669
The basic design as shown above is fine to get started.

What do you have / are you planning for Firewall 1 and 2?

For smal clients, I use Juniper Netscreen SSG5 firewalls and then put in an IPSec VPN tunnel between the sites. I use a good consultant to set up the tunnels and it works just fine.

... Thinkpads_User
0
 

Author Closing Comment

by:ang3lus
ID: 36535618
thanks
0
 
LVL 92

Expert Comment

by:John Hurst
ID: 36535633
I was happy to help out. Good luck going forward with your configuration. ... Thinkpads_User
0

Featured Post

Free camera licenses with purchase of My Cloud NAS

Milestone Arcus software is compatible with thousands of industry-leading cameras for added flexibility. Upon installation on your My Cloud NAS, you will receive two (2) camera licenses already enabled in the software. And for a limited time, get additional camera licenses FREE.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Watchguard XTM 2 70
The endless cat and mouse game of fail2ban 4 100
McAfee LiveSafe firewall is blocking a safe website 3 88
SRX240 SYSLOG Setting 6 91
The use of stolen credentials is a hot commodity this year allowing threat actors to move laterally within the network in order to avoid breach detection.
This paper addresses the security of Sennheiser DECT Contact Center and Office (CC&O) headsets. It describes the DECT security chain comprised of “Pairing”, “Per Call Authentication” and “Encryption”, which are all part of the standard DECT protocol.
Hi friends,  in this video  I'll show you how new windows 10 user can learn the using of windows 10. Thank you.
Many functions in Excel can make decisions. The most simple of these is the IF function: it returns a value depending on whether a condition you describe is true or false. Once you get the hang of using the IF function, you will find it easier to us…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now