« Return to Thread: Fortinet & ISA 2006

RE: Fortinet & ISA 2006

by Byers, Jim :: Rate this Message:

Reply to Author | View in Thread

Some parts of this message have been removed. Learn more about Nabble's security policy.
Does anyone have info on how the DNS design would be different in a two-tiered firewall, vs a three legged one tier firewall. Is it common practice to have the DNS split three ways, with a special DNS for the DMZ (in a two tiered design). This is mainly to accommodate the mail servers in the DMZ which need to talk to internal mail servers, and does pertain to NAT vs routed on the internal gateways.
 
James Byers
FW Admin 
 

From: Mani Akella [mailto:mani@...]
Sent: Monday, June 18, 2007 3:38 PM
To: firewalls@...
Cc: 'Todd Whaley'; 'David Mbouroukounda'
Subject: RE: Fortinet & ISA 2006

I have used Fortinets (clustered) in transparent mode in the FE and checkpoints in the BE - works well, no issues beyond standard maintenance.
 
 


From: listbounce@... [mailto:listbounce@...] On Behalf Of Todd Whaley
Sent: Monday, June 18, 2007 12:10 PM
To: David Mbouroukounda; firewalls@...
Subject: RE: Fortinet & ISA 2006

We have a Linux based firewall on our edge and an ISA 2004 on the BE…works fine.  The biggest choice for us was to use a route or NAT relationship between the 2 firewalls.

 

From: listbounce@... [mailto:listbounce@...] On Behalf Of David Mbouroukounda
Sent: Thursday, June 14, 2007 9:46 AM
To: firewalls@...
Subject: Fortinet & ISA 2006

 

Hi,

 

I’m about to set up a new infrastructure FE/BE :Two Fortigate F 500 (in clustering/HA ) at the Front and ISA 2006  server at the back

Please could someone have any advices about these choices? Are they good enough

 

Cordially

DM

This email is intended for the sole use of the individual(s) to whom it is addressed, and may contain information that is privileged, confidential, and exempt from disclosure under applicable law.  You are hereby notified that any dissemination, duplication, or distribution of this transmission by someone other than the intended addressee or its designated agent is strictly prohibited.  If you have received this email in error, please notify the system manager by sending an email to admin@....  This footnote also confirms that this email message has been swept by MIMEsweeper for the presence of computer viruses. 

 



EMAIL DISCLAIMER:

The information contained in this message may be

privileged or confidential and is protected from disclosure.

If the reader of this message is not the intended recipient,

or an employee or agent responsible for delivering this message

to the intended recipient, you are hereby notified that any

dissemination, distribution or copying of this communication is

strictly prohibited. If you have received this communication in

error, please notify us immediately by replying to the message

and deleting it from your computer.

 « Return to Thread: Fortinet & ISA 2006