NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] ISS Real Secure



Hmm...

Supposing the critical stuff may be on the DMZ, I would put that there, so,
anything that has already passed through the Firewall would be inspected.

That would require less from a hardware perspective and would protect the
critical part of the net.

For the other hand I agree with you if the focus of the tool would be DoS
attacks against the Firewall for example.

My $0.02.. :)


----- Original Message -----
From: "Dan Guinn" <[email protected]>
To: "'Eliot Irons'" <[email protected]>;
<[email protected]>
Sent: Wednesday, May 09, 2001 10:53 AM
Subject: RE: [FW1] ISS Real Secure


>
> If it were me, I'd put the RealSecure box on the OUTSIDE, so it can watch
> for malicious activity on the inbound packets.
>
> My $0.02
>
> Dan Guinn
> NetStar Communications
>
> -----Original Message-----
> From: Eliot Irons [mailto:[email protected]]
> Sent: Tuesday, May 08, 2001 10:16 AM
> To: [email protected]
> Subject: [FW1] ISS Real Secure
>
>
>
>
>
> All,
>
> We are deploying two Checkpoint FW-1 4.1 on Solaris 2.8 with Stonebeat
> fullcluster.
>
> INTERNET > CSU/DSU > ROUTER > FW-1 > ROUTER > CORE SWITCH
>
>
DMZ
>
> INTERNET > CSU/DSU > ROUTER > FW-1 > ROUTER > CORE SWITCH
>
> I am trying to find the best place behind the FWs to put a ISS Real Secure
> Network Sensor. Any experience someone could share I would appreciate it.
>
> Eliot Irons
> Information Services Security
> [email protected]
>
>
>
>
> This e-mail is confidential.  If you are not the intended recipient, you
> must
> not disclose or use the information contained in it.  If you have received
> this
> mail in error, please tell us immediately by return e-mail and delete the
> document.
>
>
>
============================================================================
> ====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>
============================================================================
> ====
>
>
>
============================================================================
====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>
============================================================================
====
>
>



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.