Solved

firewall beteen 2 uplinks and 2 redundant switches

Posted on 2015-02-22
5
117 Views
Last Modified: 2015-02-23
Hello Experts,

we have somevservers in a datacenter. at the moment we dont have a physical firewall in place.

We have 2 reduntant uplinks (each from a core router) connected to 2 redundant switches. so each uplink is connected to each switch and the switches themselves are connected to eachother.

we want a physical firewall between the uplinks and the switches.

what is the best way to do this and which type of firewall can we use for this. And will there be a decrease of network performance?

thanks in advance for the help.

Regards,
0
Comment
Question by:PramoIT
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 9

Expert Comment

by:Benjamin MOREAU
ID: 40624710
You have to use 2 firewall with "High Availability". You can use, Cisco, Juniper, Sonicwall products...You have a lot of products, it depends of your budget & fonctionnality you want to use.
0
 

Author Comment

by:PramoIT
ID: 40625820
OK, so the set up stays the same, beside the fact that between each uplink and switch there will be one firewall? Do the firewall have to be connected to each other?

What type of firewall is low budget. And can it be done with 1 firewall? This is a small environment that is mostly used for testing.

Thanks.
0
 
LVL 9

Expert Comment

by:Benjamin MOREAU
ID: 40625919
You can use Sonicwall Firewall. They are not very expensive (for exemple TZ210 for small environnement).

If you use only one Firewall, you will not have "high availability" but if it's only for testing, I think only one firewall is OK.

Be careful with you firewall choice; you have to size your firewall with your usage (nb of user, bandwidth...).
0
 

Author Comment

by:PramoIT
ID: 40625936
Hi Benjamin,

Thank you. Can this particular firewall also be used as high availability at a later point if we want to?

In case of 2 firewalls, do we have to maintain the config on both?

Thanks.
0
 
LVL 9

Accepted Solution

by:
Benjamin MOREAU earned 500 total points
ID: 40626614
Sorry for my last post, I said "TZ210" but it's "TZ215" (TZ210 is no longer available).

Yes, you can use High Availability after... you just have to buy an other TZ215 & you can configure it with HA (active/passive mode).

When you make your config, you will do it on active node. Passive node will automatically get the config.

More information here : http://www.sonicwall.com/downloads/TZ215_Series_DS_US.pdf
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
SonicWall Max Connection Setting 7 85
802.1x and RDP Issues 6 110
TCP Reset from Server 3 109
DHCP behind catalyst 3750 POE-48 2 84
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
Tired of waiting for your show or movie to load?  Are buffering issues a constant problem with your internet connection?  Check this article out to see if these simple adjustments are the solution for you.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question