Hello. In a big network with +60,000 hosts and a media BW of 700 Mbps to the Internet, what would be the best FW solution to protect the network?
A big FW with a centralized perimeter?
Or, some little FW per area and a last resort FW pointing to Internet?
Currently we have a cluster of firewalls in a centralized perimeter, but from time to time some latency issues affect the network, it seems the FW is unable to inspect so much traffic.