Foundation Topics
General Implementation Recommendations
In the SAFE medium-sized network implementation, we will look at the specific configuration requirements for the following components:
- ISP router
- Edge router
- Cisco IOS Firewall router
- PIX Firewall
- Network intrusion detection system (NIDS)
- Host-based IPS
- VPN concentrator
- Layer 3 switch
Figure 16-1 illustrates the medium-sized network modules and their respective devices.
Figure 16-1. Medium-Sized Network Devices
Appendix B, "General Configuration Guidelines for Cisco Router and Switch Security." You should familiarize yourself with the content of this appendix because the commands that it presents (which are not shown in this chapter) play an important role in the overall implementation.