Currently, I have a 100Mbps MOE circuit connecting two offices and I'm taking a 30Mbps chunk to bring in new Internet service to our Main Office. My issue question is.... What's the best way to split the Internet portion off and send it in through the firewall - or even a different firewall (preferred)? I need to keep the intra-office portion away from the firewall(s) and bring it right into the core switch.
1) I know I should be using my FESX448's as my gateways - but I'm not (not to say I won't, I just haven't yet).
2) I'd like to split my web browsing traffic off altogether and maybe send it out a different firewall. I have a few app servers out on a DMZ in the current config and non-web traffic doesn't flow well through the Barracuda.
3) The 30Mbps VLAN tagged Internet circuit will replace the Qwest Bonded T1 (3Mbps) connection (I may keep it around as a redundant circuit, but it will likely be disco'd).
4) The 2811 "gateways" have add-on switch modules (additional 16 x FE ports) - other than that, they all have the standard 2 x FE ports.
So with the parts I have, what would you suggest? Note: The "30Mbps VLAN Tagged Internet" isn't active yet and is what I will be implementing.
Here's a basic map of the current config:
Thanks in advance!!
1) I know I should be using my FESX448's as my gateways - but I'm not (not to say I won't, I just haven't yet).
2) I'd like to split my web browsing traffic off altogether and maybe send it out a different firewall. I have a few app servers out on a DMZ in the current config and non-web traffic doesn't flow well through the Barracuda.
3) The 30Mbps VLAN tagged Internet circuit will replace the Qwest Bonded T1 (3Mbps) connection (I may keep it around as a redundant circuit, but it will likely be disco'd).
4) The 2811 "gateways" have add-on switch modules (additional 16 x FE ports) - other than that, they all have the standard 2 x FE ports.
So with the parts I have, what would you suggest? Note: The "30Mbps VLAN Tagged Internet" isn't active yet and is what I will be implementing.
Here's a basic map of the current config:
Thanks in advance!!