<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2" -->
<rss version="2.0">
    <channel>
        <title>Lowyat.NET: Latest topics by invid</title>
        <description></description>
        <link>http://forum.lowyat.net/</link>
        <lastBuildDate>Sat, 20 Jun 2026 23:47:47 +0800</lastBuildDate>
        <generator>FeedCreator 1.7.2</generator>
        <item>
            <title>Routing Help</title>
            <link>http://forum.lowyat.net/topic/1422968</link>
            <description>Hi, need advice from CCNA experts out there&amp;#33;&lt;br /&gt;&lt;br /&gt;192.168.10.0/24------|&lt;br /&gt;192.168.11.0/24-----||&lt;br /&gt;192.168.12.0/24----|||&lt;br /&gt;192.168.13.0/24---||||&lt;br /&gt;192.168.14.0/24--|||||&lt;br /&gt;.............................|||||&lt;br /&gt;........................x-device&lt;br /&gt;..............................|&lt;br /&gt;.......................firewall&lt;br /&gt;172.16.1.0/24------|&lt;br /&gt;&lt;br /&gt;I have the following network, where the 192.168.10.0/24 to 192.168.14.0/24 are the client side (pc) and the 172.16.1.0/24 are the server side. &lt;br /&gt;I have a firewall in place after x-device, how should I go about connecting the 5 connections to the firewall, since it only have two ports, one for client side and one for server side. Which option is the best since I dont want to load the firewall already. Theses are the options that I am considering in place of x-device :&lt;br /&gt;&lt;br /&gt;a. Use layer-2 switch, put each connection from client on a VLAN (10-14), and tag all the VLANs (10-14) on one port to the firewall. (switch do switching, firewall do routing and filtering)&lt;br /&gt;&lt;br /&gt;b. Use layer-2 switch + static route,  put each connection from client on a VLAN (10-14), but the port to firewall is tag with another VLAN (15) (switch do switching &amp;amp; routing, firewall do filtering)&lt;br /&gt;&lt;br /&gt;c. Use layer-2 switch and a 2 port router (sits between switch and firewall) , put each connection from client on a VLAN (10-14), and tag all the VLANs (10-14) on one port to the router 1st iface. Router to firewall on 2nd iface (switch do switching, router do routing, firewall do filtering)&lt;br /&gt;&lt;br /&gt;Which solution is the most viable or are there any better solution? &lt;!--emo&amp;:sweat:--&gt;&lt;img src='http://static.lowyat.net/style_emoticons/default/sweat.gif' border='0' style='vertical-align:middle' alt='sweat.gif' /&gt;&lt;!--endemo--&gt;</description>
            <author>invid</author>
            <category>Networks and Broadband</category>
            <pubDate>Fri, 14 May 2010 13:41:45 +0800</pubDate>
        </item>
    </channel>
</rss>
