NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] FW-1 and Websense



I have a specific LAN for visitors that is only allowed access to the
outside world.  I have 3 rules defined for this network.

visitor-net		any			http-->Adult	drop		long
vistor-net		external-net	http			accept	long
						telnet
						ftp
						ssh
						https
						dns
visitor-net		any			any			drop		long

My problem is that I can do all the functions accept HTTP and HTTPS.  Every
packet that goes out on those two services are being drop for web security
reasons by websense.  The only way I have been able to get the rule to work
is instead of using the external-net object, I had to use the any for rule
#2.  This does not seem right to me.  Has anyone else had this problem?  My
external-net object is 0.0.0.0 and is used in my address translation table.
This was an object recommended by CkeckPoint.  I have called websense, but
they are a callback (No live people on the phones!) system and who knows
when they will call back.  Any help would be greatly appreciated.

Best regards,

Marc Jacquard
SR. Systems Engineer (CCSA)
Fujitsu America, INC.
Hilo Office
email: [email protected]
Telephone:Pager:================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.