Hi
I currently have a setup with a Cisco Router 2620 and a Cisco PIX506 firewall that looks as follows:
INTERNET
|
Cisco Router 2620 (xxx.yyy.zzz.177/28)
|
switch (Public IPs: xxx.yyy.zzz.180-190)
|
Cisco Firewall Pix 506 (ext. interface xxx.yyy.zzz.178/28)
| (global outbound xxx.yyy.zzz.179)
| (int. interface 192.168.20.254/24)
|
|
internal network (192.168.20.xxx)
Basically I want to get rid of the Cisco Firewall PIX506 and replace it with Astaro Firewall v4 (maybe in HA mode), I also want to have all the public IPs routed to servers in a DMZ.
So I suppose I should have The Astaro Firewall connected directly to the Cisco Router then all the public IPs will be mapped to the WAN interface and depending on the destination of the incoming packets I will route the traffic to different servers in the DMZ (or the internal network).
So for example, traffic to www.hutorm.org which resolves to xxx.yyy.zzz.185 would go to 192.168.10.100 in the DMZ
Am I making sense here [:S]
Any info, tips much appreciated.
Thanks a lot.
This thread was automatically locked due to age.