I have following idea to config my network.  I want some advices to see
if it is possible to do it.

Machine 1    ----   Firewall -1   ------ Machine 2
(DMZ zone)         (checkpoint)           (Internal LAN)

1. Machine 1 can talk to Machine 2 only
2. User define protocol (X) is the ONLY protocol that allow through the
firewall-1
3. I want to perform encryption between Machine 1 & 2 (SKIP as VPN)

Once I config the SKIP, the firewall-1 cannot tell what the protocol is
passing between machine 1 & 2 (SKIP add an envelope over the IP packet
header).  Is there anyway that I can only allow protocol X over SKIP
packets through FW-1, but not the rest of protocol such as http

Any advices or alternatives are welcome.
/Ivan




-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to