[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW1] ISS Real Secure
Hmm... Supposing the critical stuff may be on the DMZ, I would put that there, so, anything that has already passed through the Firewall would be inspected. That would require less from a hardware perspective and would protect the critical part of the net. For the other hand I agree with you if the focus of the tool would be DoS attacks against the Firewall for example. My $0.02.. :) ----- Original Message ----- From: "Dan Guinn" <[email protected]> To: "'Eliot Irons'" <[email protected]>; <[email protected]> Sent: Wednesday, May 09, 2001 10:53 AM Subject: RE: [FW1] ISS Real Secure > > If it were me, I'd put the RealSecure box on the OUTSIDE, so it can watch > for malicious activity on the inbound packets. > > My $0.02 > > Dan Guinn > NetStar Communications > > -----Original Message----- > From: Eliot Irons [mailto:[email protected]] > Sent: Tuesday, May 08, 2001 10:16 AM > To: [email protected] > Subject: [FW1] ISS Real Secure > > > > > > All, > > We are deploying two Checkpoint FW-1 4.1 on Solaris 2.8 with Stonebeat > fullcluster. > > INTERNET > CSU/DSU > ROUTER > FW-1 > ROUTER > CORE SWITCH > > DMZ > > INTERNET > CSU/DSU > ROUTER > FW-1 > ROUTER > CORE SWITCH > > I am trying to find the best place behind the FWs to put a ISS Real Secure > Network Sensor. Any experience someone could share I would appreciate it. > > Eliot Irons > Information Services Security > [email protected] > > > > > This e-mail is confidential. If you are not the intended recipient, you > must > not disclose or use the information contained in it. If you have received > this > mail in error, please tell us immediately by return e-mail and delete the > document. > > > ============================================================================ > ==== > To unsubscribe from this mailing list, please see the instructions at > http://www.checkpoint.com/services/mailing.html > ============================================================================ > ==== > > > ============================================================================ ==== > To unsubscribe from this mailing list, please see the instructions at > http://www.checkpoint.com/services/mailing.html > ============================================================================ ==== > > ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|