Choosing A Firebox Configuration - Watchguard Firebox X1000 User Manual

Vpn gateway
Hide thumbs Also See for Firebox X1000:
Table of Contents

Advertisement

Chapter 3: Getting Started
All trusted computers must have their ARP caches
flushed.
The majority of a LAN resides on the trusted interface
by creating a secondary network for the LAN.
The benefit of a drop-in configuration is that you don't
have to reconfigure machines already on a public network
with private IP addresses. The drawback is that it is gener-
ally harder to manage and is more prone to network prob-
lems.

Choosing a Firebox configuration

The decision between routed and drop-in mode is based on
your current network. Many networks are best served by
routed mode. However, drop-in mode is recommended if
you have a large number of public IP addresses, you have a
static external IP address, or you are not willing or able to
reconfigure machines on your LAN. The following table
summarizes the criteria for choosing a Firebox configura-
tion. (For illustrative purposes, it is assumed that the drop-
in IP address is a public address.)
32
WatchGuard Firebox System

Advertisement

Table of Contents
loading

Table of Contents