Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

FWSM

Status
Not open for further replies.

b1337318

MIS
Aug 6, 2009
5
US
What would be the main reason for using the FWSM in a datacenter context? Is it to protect incoming traffic from outside the datacenter or protect traffic from one VLAN to another?

I am assuming ACLs can be used without using a FWSM and be applied directly to the VLANS in the Supervisor engine.
 
there could be a number of different reasons to use the fwsm, two of which you mentioned.

I hate all Uppercase... I don't want my groups to seem angry at me all the time! =)
- ColdFlame (vbscript forum)
 
Assuming:

-A separate Edge firewall device will filter traffic entering the datacenter.

-No use of multiple contexts

-No advanced firewall functionality needed between VLANS in the datacenter. No DPI or NATing

-VLAN ACLs could be created on the Supervisor instead of the FWSM.

What would be another reason to use the FWSM?

Thanks!
 
well, security in layers is your best defense (aside from completely disconnecting your computer) so it still may be good to have. if you're not too terribly concerned then you don't need it :)

I hate all Uppercase... I don't want my groups to seem angry at me all the time! =)
- ColdFlame (vbscript forum)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top