Hello,

> terms of reporting port numbers of TCP/UDP connections.  Supposedly this
> is fixed in v6.0, which just came out, but I have not tested.  In
> general, I would say that if you just want to buy a reporting package
> and have it "just work" on logs, PIX doesn't score high.  If you like
> writing code and dealing w/regexps, then you're in for lots of fun
> w/your syslog files...

We have some good perl hackers in house. I'd gladly give it to them. ;)

> There is no concept of "groups" of objects in the PIX itself.  You can
> look at the PIX gui and see if there's a way to do that in the gui
> layer.  Until recently, the PIX gui was awful.  It is now rumored to be
> better but I haven't tried it.

I evaluated the PIX gui and the Cisco Secure Policy Manager (or something
like that) around 6 months ago... and they were both quite bad.

Thanks for the info, I appreciate it!

Regards,

-- p.

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to