NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [FW1] how to disable RIP on sun ultra 10 solaris?



Routed or in.routed manages dynamic routing tables.  I prefer to use static
routing on firewalls whenever possible rather than the firewall learning
routes from routers.  It definitely depends on how the internal network is
structured.  If for example the rulebase in the firewall is not allowing
dynamic routes to be learned on any interface and static routes are set up
to all subnets it needs to talk to, then routed can be disabled.  What
routed does not do is turn on ip forwarding in the Solaris kernel.  On a
Checkpoint system ip forwarding should be disabled in the kernel so that
your firewall does not start routing before Firewall-1 is started.  





-----Original Message-----
From: Hartmann, Josef
To: '[email protected] '
Sent: 2/9/01 3:42 AM
Subject: RE: [FW1] how to disable RIP on sun ultra 10 solaris?


Well,

if the firewall has multiple interfaces and behind these there are
different
nets than the one directly connected to the firewall, routed has to run,
doesn't it?



> -----Original Message-----
> From:	Vincent, Mike [SMTP:[email protected]]
> Sent:	Wednesday, February 07, 2001 4:21 PM
> To:	'Patrick Koehne '; '[email protected] '
> Subject:	RE: [FW1] how to disable RIP on sun ultra 10 solaris?
> 
> 
> Solaris will run routed and advertise rip if the default route is not
> defined in /etc/defaultrouter.  Solaris will also run routed if the
file
> /etc/gateways exists.  So depending on your network environment and
> current
> configuration defining a default gateway will prevent routed from
running
> and advertising rip.   Have a look at /etc/rc2.d/S69inetinit.  
> 
> -----Original Message-----
> From: Patrick Koehne
> To: [email protected]
> Sent: 2/7/01 9:24 AM
> Subject: [FW1] how to disable RIP on sun ultra 10 solaris?
> 
> 
> eSafe Gateway(tm) has scanned this mail for viruses, vandals and 
> suspicious attachments and has found it to be CLEAN.
> ______________________________________________________________
> 
> Hi Folks
> 
> Just recognized that FW is speaking RIP.
> I don't know under solaris who to switch that off... :-((
> 
> Any help, please?
> 
> Thanx in advance
> Patrick
> 
> 
> 
>
========================================================================
> ========
>      To unsubscribe from this mailing list, please see the
instructions
> at
>                http://www.checkpoint.com/services/mailing.html
>
========================================================================
> ========
> 
> 
>
========================================================================
==
> ======
>      To unsubscribe from this mailing list, please see the
instructions at
>                http://www.checkpoint.com/services/mailing.html
>
========================================================================
==
> ======


========================================================================
========
     To unsubscribe from this mailing list, please see the instructions
at
               http://www.checkpoint.com/services/mailing.html
========================================================================
========


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.