»
 

Go Back   ResellerRatings Store Ratings > ResellerRatings Forums > Tech Support

Reply
 
LinkBack Thread Tools Display Modes
Old 02-27-2004, 03:22 PM   #1 (permalink)
Registered User
 
Join Date: Sep 2002
Location: Cumberland MD
Posts: 109
herura is on a distinguished road
Kids NAT or transparent mode for firewall?

I recently purchased a SonicWall firewall for a server I have at a datacenter. It supports both NAT and transparent mode. Both would work for my use. The server backs up user files (compressed and enycrypted) for my clients. It also provides DNS, Web and Mail services for these same clients. It runs win2k server.

My question is under what conditions would you use one over the other?

Thanks

herura is offline   Reply With Quote
Old 02-27-2004, 04:11 PM   #2 (permalink)
Registered User
 
Sixpac_XP's Avatar
 
Join Date: Oct 2001
Location: Victoria, CDN
Posts: 2,083
Sixpac_XP is on a distinguished road
It depends on what IP addressing you are using. Are you using internal private IP address's or routable internet IP's?

Do you want to seperate the networks completely and put them in their own subnet?
Sixpac_XP is offline   Reply With Quote
Old 02-27-2004, 04:12 PM   #3 (permalink)
Registered User
 
Sixpac_XP's Avatar
 
Join Date: Oct 2001
Location: Victoria, CDN
Posts: 2,083
Sixpac_XP is on a distinguished road
Oh and for what purpose are you using this firewall? I have installed and used 4 sonicwalls (Pro 100's) untill we put in Cisco Pix firewalls.
Sixpac_XP is offline   Reply With Quote
Old 02-27-2004, 04:38 PM   #4 (permalink)
Registered User
 
Join Date: Sep 2002
Location: Cumberland MD
Posts: 109
herura is on a distinguished road
My primary purpose is to prevent hackers from getting to my server. I have used the PIX (505 and 515) as well, and while is an excelent firewall, I find it difficult to use, just as any cisco IOS based device is. I prefer the sonicwall because it is simply easier to setup and will work just fine for my use.

As for IP's. I have public routable IP's.
herura is offline   Reply With Quote
Old 02-27-2004, 05:08 PM   #5 (permalink)
bdj
Registered User
 
bdj's Avatar
 
Join Date: Oct 2001
Location: L.A. County
Posts: 320
bdj is on a distinguished road
Unless there is some reason not to, I would use NAT. Even though you have a routable IPs, there is no reason to give any one an easy way into your network. If the IP / IPs assigned to you by your ISP are different than your internal address, than NAT is the way to go.

bdj

Last edited by bdj; 02-27-2004 at 05:12 PM.
bdj is offline   Reply With Quote
Old 02-27-2004, 05:20 PM   #6 (permalink)
Registered User
 
Sixpac_XP's Avatar
 
Join Date: Oct 2001
Location: Victoria, CDN
Posts: 2,083
Sixpac_XP is on a distinguished road
I would really need to see a network diagram to understand what you are trying to do since you are talking about other services that this server is doing such as DNS and Webmail.
Sixpac_XP is offline   Reply With Quote
Old 02-28-2004, 06:53 AM   #7 (permalink)
Registered User
 
DVNT1's Avatar
 
Join Date: Oct 2001
Location: Ohio
Posts: 5,577
DVNT1 is on a distinguished road
I would normally go with Transparent mode when possible. At least less NAT mappings to worry about.
DVNT1 is offline   Reply With Quote
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Most Active Discussions

Recent Discussions

All times are GMT -6. The time now is 06:27 PM.