Several border firewalls in the same network
- by nimai
I'm currently analyzing the consequences of multipath connections for the firewalls.
In that context, I'm wondering if it's really uncommon to have several firewalls at the borders of a network to protect it.
The typical case I'd imagine would be a multihomed network, for which the administrator would have different policies for links from different (or not) ISPs. Or maybe even in an ISP's network.
What would be the practical (dis)advantages of such a configuration?
Could you provide an example of an existing topology using several border firewalls?