I have a client with Firewalls PIX 525 in your network. The firewall have:
- Interface Inside to the inside network
- Interface Outside to the outside network (internet, routers, etc...)
- Interface DMZ1 to the DMZ network (Public servers)
- Interface Management to the Management network (CiscoWorks, syslog, etc...)
there are two firewalls, an active firewall and a failover firewall with stateful failover.
I want improve the security with network IDS, and I have through install two 4215 in the outside and DMZ1 network.
What do you Think?
Is a Good side to place the IDS's?
throughput Network IDS 4215 = 80 mbps
What is the problem if the traffic is of 100 Mbps?
Thanks