We've got an ISA with several networks: DMZ1, DMZ2, internal, and a wireless LAN. All have different network IDs, etc. Currently we have a switch for each network, and a corresponding NIC in the ISA going to each switch. I know we need a NIC in ISA for each network, but is it possible to consolodate all the switches into one larger swithc? Theoretically it seems that it would work, since all a switch really cares about is the destination MAC address, but it seems that it could be a bit of a security risk. Thanks,
Is it possible? depends on the switch, really. I know that you can slice up the different networks by assigning a unique VLAN to each utilized port on the switch. I won't go into the security risks, but you're correct, in that you will potentially run into security risk(s).