Hi all
I am planning to connect my PC to a LAN which is behind an XG125 (fw1). fw1 is connected to an xg125 (fw) which is connected to internet. Help me configure the firewalls so that the PC can access internet through fw1-web proxy.
Note: PC is able to access internet in direct mode. ie if I use rule LAN to WAn any any
Regards
Koshy
Well you really can use either, there more than likely pros an cons to each, for example, maybe you want to lighten the load on the cpu/ram of fw2 by having the IPS/Web Proxy/Other Security separated between the two.
Really if you are not dnat'ing or port forward traffic through firewall 2 to firewall 1 then it is just web traffic destined for that device, however all denied traffic by firewall 1 will still pass through firewall 2 before it is denied or accepted by firewall 1.
There are a few others in here who's knowledge far exceeds mine on this, personally I think it might come down to preference but I would wait, they usually chime in within a day or so.
Respectfully,
Badrobot