Internet Edge and Defense in Depth

-Hammer- bhmccie at
Tue Dec 6 21:25:38 UTC 2011

I personally have not seen it done in large environments. Hardware isn't 
there yet. I've seen it done in small business environments. Not a fan 
of the idea.


"I was a normal American nerd"
-Jack Herer

On 12/06/2011 03:16 PM, Holmes,David A wrote:
> Some firewall vendors are proposing to collapse all Internet edge functions into a single device (border router, firewall, IPS, caching engine, proxy, etc.). A general Internet edge design principle has been the "defense in depth" concept. Is anyone collapsing all Internet edge functions into one device?
> Regards,
> David
>    ________________________________
> This communication, together with any attachments or embedded links, is for the sole use of the intended recipient(s) and may contain information that is confidential or legally protected. If you are not the intended recipient, you are hereby notified that any review, disclosure, copying, dissemination, distribution or use of this communication is strictly prohibited. If you have received this communication in error, please notify the sender immediately by return e-mail message and delete the original and all copies of the communication, along with any attachments or embedded links, from your system.

More information about the NANOG mailing list