[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [FW1] Re: FIREWALL - ICMP
Hi Paul! If you have already configured the SECURITY POLICY, the only thing you have to do is to change in the policy properties, the line that says ALLOW ALL ICMP PACKET.(Policy Menu -> Properties) If you mark FIRST, the Firewall will accept all ICMP Packet. If you mark LAST, the Firewall will not accept any ICMP Packet. If you mark BEFORE LAST, only your Network Objects will accept all ICMP Packet, but the Firewall never respond the requests. Hope this helps you! Regards, Matias Siri --- Paul Cunningham <[email protected]> wrote: > > Hello all, > > I am a newbie with this software and have been > thrust into a situation that > requires me to write a rule for my firewall denying > all ICMP traffic. Our > regular administrator is unreachable and we have no > tech support. I need to > lock this down to stop a "Smurf" attack on my > network. If anyone might be > kind enough to lend me a hand I would appreciate it. > I'm sure it's easy for > people who are well versed in the software, but I am > looking at it for the > first time today! I'm sure that rule may already be > in place, but need to > verify that. I figured out the basics on how to > create the rule, but I'm not > sure where the objects should be placed and what, if > any, advanced features > I need to invoke. > > Thanks, > > Paul > > _________________________________________________________________ > Get your FREE download of MSN Explorer at > http://explorer.msn.com/intl.asp > > > > ================================================================================ > To unsubscribe from this mailing list, please > see the instructions at > > http://www.checkpoint.com/services/mailing.html > ================================================================================ > __________________________________________________ Do You Yahoo!? Make international calls for as low as $.04/minute with Yahoo! Messenger http://phonecard.yahoo.com/ ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|