Firewall Wizards mailing list archives

Controlling 2 firewalls through a proxy with NAT?


From: "Matt Bruce" <matt_bruce72 () hotmail com>
Date: Tue, 25 Sep 2001 10:49:17 +0000

Hi all,

I'm wading through the Firewall-1 and Firewall Wizards list archives to see if anyone has encountered my situation, but it's looking bleak. I'm investigating whether it's possible to control two Firewall-1 machines through a proxy machine running NAT (not sure if it's static, hide or pool at the moment). I'm just after control connections (policy application, logging, etc), and am about to experiment with doing a firewall-to-firewall VPN through the proxy (Raptor) to see if that allows it.

Here's the basic idea:

  Internet                   Internal
 .--------.     .-----.     .--------.
 |Firewall|     |Proxy|     |Firewall|
 | module +-----+  &  +-----+& Mgmt &|
 |  only  |     | NAT |     |  GUI   |
 '--------'     '-----'     '--------'

Does anyone have any insight into this - prerequisites, gotchas, etc? Please CC any replies to me.

Cheers,
Matt Bruce

Internetworking Strategies Ltd
E: mbruce () insl co uk
PGP KeyID: 0xEB2DEC52

_________________________________________________________________
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://list.nfr.com/mailman/listinfo/firewall-wizards


Current thread: