Hi gals/ Guys

Now here's the new design of the network......

DSL connection => DSL Modem => Router With Access Control List => WEBServer & DC. (Both having Different IPS)

Now what i wanna know is do we need to have a hardware based firewall as I have heard with Web Server there is a very good chance of getting attacked from outside, As this is going to be my first experience of running a webserver outside the domain.

Also i wanted to know what are the disadvantages of having two seperate servers rather than having one for both the things, as i have to make a comparision in between the old and new scenario.

Thanx