NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW-1] HTTP Tunnelling



Hi,

This is with respect to a query raised by one our customer. The customer
has a scenario where they are using a Check Point firewall with a well
known IDS. The customer has the FTP service blocked to&fro from their
network. But it is recently observed that some on the internal users have
started downloading stuff from some FTP sites using anonymous proxies and
site services such as those offered by www.safeproxy.org. I think this is
via the HTTP tunnelling to such sites thereby passing FTP data.
As an admin I know there can be a list of known anonymous sites which can
be blocked on the firewall or using on a URL filtering device. But my
concern is can the firewall block such type of tunnelling/evasion where by
unauthorized/malicious data can enter ones network. Is there any service on
the firewall which can detect such sessions.

Requesting consideration/feedback. Please revert.
Regards
Navin Mehra
SOFTCeLL Technologies Limited
Ph. 460 6969 Extn. 248

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.