Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Couple security questions

I have a couple questions to ask.

I have a large number of devices with ACL's, what is the best way to modify the ACL list (which is rather long) without manual intervention.

I was also wondering about failover using the IOS firewall feature set. I have 2 connections to the internet, if the first fails, will everyone lose their internet connection while the failover takes place?

How much of a processor hog is the IOS firewall feature set compared to using a seperate PIX. I have a high end router that has very log utilization.

Thanks.

1 REPLY
New Member

Re: Couple security questions

Short of CiscoWorks/VMS ACL manager there isn't a good way of doing this.

Failover is instantanous, no connections should be dropped.

7200VXR series routers do well and is comparable to the PIX, but a 2600 series with a lot of traffic can have problems depending usage.

122
Views
0
Helpful
1
Replies
CreatePlease to create content