Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Westi on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

SECURING A NETWORK WITH ACL or FW

Status
Not open for further replies.

rcasta

Technical User
Aug 8, 2002
211
CA
Hello,

My boss asked me if buying a Firewall worth it. After all, our network is currently "protected" by access lists preventing unwanted traffic to cross our network.

Let's forget about how much CPU ACLs use up (a powerful Cisco 7200 is the edge router). What about if the only traffic allowed (since this VPN network has only one exit to the Internet) is voice traffic (H.323, allowing ports 1720 and the like).

Would it be secure?
What would be the caveats?
Would it be worth buying a Firewall box?

best regards,
 
Hi,

Read the following link it explains the difference between packet filters (ACLs) proxys and stateful inspection (PIX firewall):


If you do not want to invest in a firewall you may consider upgrading the IOS feature set on your router to IOS firewall (CBAC). Search Cisco's web site for CBAC and you will find plenty of information on this subject. Hope this helps.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top