Security Basics mailing list archives

RE: Protecting PIX Firewall at the Perimeter Router


From: "Piacquadio, Juan" <juan.piacquadio () eds com>
Date: Tue, 5 Nov 2002 13:41:43 -0500

Naman,

I mean that using some access-lists as I can see that you did is just
enough. It is everything done.
Besides that you should avoid permitting icmp requests from the PIX and
through it.

Regards,

Juan

-----Original Message-----
From: Naman Latif [mailto:naman.latif () inamed com]
Sent: Monday, November 04, 2002 10:47 PM
To: security-basics () security-focus com
Subject: Protecting PIX Firewall at the Perimeter Router


Hi All,

I wanted some suggestions\practical experiences for protecting a
Firewall wall at the Perimeter Router Level.

We have a PIX Firewall connected to our Cisco Router, which is connected
to the Internet. Should there be any IOS Firewall Rules in the Router,
other than blocking Telnet,FTP etc to the Firewall itself ?

PIX will be doing NAT, protecting DMZ machines, and IPSec connections.

Regards \\ Naman


Current thread: