Chris:
Before you do anything with firewall softwae, get routing straight. In
a multi-homed environment, firewall is router first. Run either static
or dynamic routing protocol. Firewall softeware itself doe not do routing,
usually. Rule sets would not route packets, they just exame them.
_ming
On Mon, 1 Feb 1999, Chris Chen stated:
> Hi,
>
> I got a basic question about firewall -- how the routing works within
> a multi-homed firewall box.
>
> Assuming that I have 3 network cards in the firewall computer (like NT
> with Raptor or UNIX with Firewall-1 ) for the connections to
> Internet, DMZ and intranet, respectively. Usually the OS level IP forwarding
> is disabled as soon as firewall software is loaded.
>
> Now if I want to split the traffic from Internet to go to DMZ and intranet
> seperatly. How do I configure the firewall ? In my understanding, I can
> configure rule set for each network card but I couldn't find out an
> explicit way to direct the traffic. Does the FW software take care the
> traffic directing automatically according to the available rule sets ?
>
> Thanks in advance.
> --Chris
>
>
> -
> [To unsubscribe, send mail to [EMAIL PROTECTED] with
> "unsubscribe firewalls" in the body of the message.]
>
============================================================================
Ming Lu Email: [EMAIL PROTECTED]
Sr. Network Engineer Phone: 703-689-5290 (w)
IP Engineering 703-855-4194 (m)
Global One Telecommunications, LLT. 703-689-6575 (f)
============================================================================
"Do not pay attention to every word people say, or you may hear your
servant cursing you ---- for you know in your heart that many times you
yourself have cursed others."
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]