NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [FW1] Content virus scanner



Marvin,

I use esfae ver 2.1 with 850 nodes (WS's) and no problems at all.

If you go to ver 3.0, you need to consider that it isn't as you say a CVP,
but instead, is connected between your internall firewall leg, and your
network, so in effect :

Internet - Firewall - Esafe30 - Internal Network

As such, it needs two nic's (at least), and does IP forwarding. You will
need to change your routers so the default gateway changes from your
firewalls internall leg to the internal leg of the Esafe30 server.

The idea behind it is very nice indeed, and it's faster then a cvp, and
protects against much more then the current 2.1 version does, but, it adds a
second point of failure to your Internet access. Whereas with a CVP, if the
cvp is down it's a simple issue of getting things working again, by changing
the rules, if this server is down, you will have to change the routers def
gateway in order to bypass it. You will then also have to change settings on
the firwall so that it knows there's no gateway there.

The site for the beta of 30 is at
http://www.ealaddin.com/esafe/beta/esg3beta.html (but I think you already
know this), but if not, it explains quite a bit more on how it works.

Aladdin are supposed to be working on a CVP version of this, which is what I
am waiting for.

If this issue doesn't bother you, you can go with it.

Mike

> -----Original Message-----
> From:	Sturrus, Marvin [SMTP:[email protected]]
> Sent:	ã ãöîáø 20 2000 13:32
> To:	'[email protected]'
> Subject:	[FW1] Content virus scanner
> 
> 
> Hi all,
> 
> Can anyone tell me what a good content virus scanner is to work together
> with Checkpoint Firewall-1? I am familiar with e-safe and a little bit
> with
> Trend Micro. At this point (we are still in a testing phase) I can't tell
> what's best. I know e-safe performs not so well (2.1) in a large network
> (more than 500 nodes) because of CVP. But on the other hand their gui and
> logging are much better then Trend Micro's and they just released 3.0
> which
> is no longer depending on CVP.
> 
> Can anyone supply me with some facts or links that will help decide what
> product is the best for us? Or does anyone have some experience already
> with
> e-Safe 3.0? 
> 
> Thanks!
> 
> Marvin Sturrus
> 
> 
> 
> ==========================================================================
> ======
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
> ==========================================================================
> ======


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.