Using the Cisco IOS Firewall Router in Medium-Sized Networks
If required, you can adopt a defense-in-depth approach within the medium-sized network design. This alternative design incorporates the functionality of the Cisco IOS Firewall and the functionality of the edge router in a single device.The implementation of this configuration requires that the edge router filtering, which was described in the previous section, be added to the Cisco IOS Firewall configuration, as explained next.To implement the Cisco IOS Firewall, use the following steps:
The firewall inspection rule set is applied to the public VLAN interface of the edge router by using the command ip inspect FIREWALL in.Referring to Figure 16-1, you can see that the next component within the medium-sized network is the PIX Firewall, which is discussed in the next section.
