We have a new CISO. he has created a new firewall policy that states all Internet connections first have to have a boundary router with ingress and egress filtering to protect against IP address spoofing and directed IP broadcasts. Then a firewall that does IDS, ACLs and all the firewall protection. Is this truly a best practice. Does have one have a router then a firewall?
... View more