more only = less secure in a parallel instance. i tried drawing that in a text box above, but it didn't work out. see below jpeg.
when run in serial redundancy = more security.
<had to bust out the autocad on this one>
now, read the disclaimer. catch does have a point in that if one firewall is compromised, any network traffic can be seen. on the other hand, if one of the upper layer (fw1 or 2) firewalls is comprimised, the third should still catch most attacks/exploits.




Reply With Quote