|
EH-Net
|
|
May 19, 2013, 09:53:38 AM
|
Show Posts
|
|
Pages: [1]
|
|
2
|
Ethical Hacking Discussions and Related Certifications / Other / Re: VRF-Lite
|
on: May 08, 2009, 09:28:47 AM
|
|
VRFs and VLANs offer equivalent security. The most common security issue with either is misconfiguration.
The Visio looks good. Since you have overlapping IP addresses, you'll need to do some NAT before you uplink to the VRFs to a common point.
In this case I'd create a VRF per customer, tie these to separate firewall contexts (virtual firewalls) where they're NAT'ed to unique addresses.
Charlie
|
|
|
|
|
3
|
Ethical Hacking Discussions and Related Certifications / Other / Re: VRF-Lite
|
on: May 06, 2009, 12:20:21 PM
|
|
VRF-lite isn't a protocol; just the name of the feature that allows for multiple routing tables.
Simple example- you have a router with a connection to your WAN and to the Internet. You want to force traffic from the WAN to the Internet (and vice versa) to traverse an attached firewall.
With VRF-Lite this is easy...
1) assign the WAN link to a second routing table (VRF) 2) connect the firewall to both routing tables (either 2 physical links or a trunk carrying 2 VLANs) 3) add a route to the global routing table saying the WAN is reachable via firewall interface 1 4) add a route to the second (VRF) routing table saying the Internet is reachable via firewall interface 2
Hope this helps, Charlie
|
|
|
|
|
8
|
EH-Net / Calendar Of Events / Re: BOSS Conference 2009
|
on: December 17, 2008, 11:40:41 AM
|
From bossconference.com- Sourcefire Postpones Conference Due to Global Economic Uncertainty
From its inception, the BOSS Conference & Sourcefire Users Summit has been driven to meet the needs of our customers, our partners, and staunch advocates of the open source security community. Although we’ve received tremendous interest and enthusiasm about this event, many have told us their travel budgets have been cut. Thus, Sourcefire has decided to postpone this conference due to global economic uncertainty.
Bummer. 
|
|
|
|
|
Loading...
|