RealSecure Network Sensor is a HOG.
It needs to be in order to perform all the sequencing that it does, and uses a ton of 
RAM in the process.

Defnitely recommended to run this on a seperate server than enforcement points.
You also can only run ONE sensor port per server.

----- Original Message -----
From: <[EMAIL PROTECTED]>
To: "Fredy Santana" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>
Sent: Friday, June 22, 2001 7:25 AM
Subject: RE: Real Secure and Firewall-1


> THe loading for a realsecure network sensor is very high.
>
> THis is because of the way the sensor deals with the traffic.  Rather than
> putting it throught the normal IP stack, RS NS creates its own stack.
>
> You're looking at something along the lines of 70% resource utilisation like
> this.
>
> Hence the rec not to run the sensor on the same machine as the firewall.
>
> Regards
>
> Simon Kellow
>
> -----Original Message-----
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]]On Behalf Of Fredy Santana
> Sent: 20 June 2001 13:47
> To: [EMAIL PROTECTED]
> Subject: Real Secure and Firewall-1
>
>
> Hi:
>
> I'm looking for experiences on install a Real Secure Network sensor in the
> same machine than a Firewall-1. Well I know this is not recomended but I
> think if the perfomance requirements are not high could work.
>
> Does anyone had made this??
>
> Regards from Chile
>
>
> Saludos
> Fredy R. Santana V.
> Ingeniero Civil El�ctrico - CCSA
> Orion 2000 - Servicios Profesionales en Seguridad Inform�tica
> La Concepcion 322 piso 12, Providencia.
> Santiago, Chile
> Fono: 56-2-6403944, Fax: 56-2-6403990
> e-mail: [EMAIL PROTECTED]
> http://www.orion.cl
>
>
> _______________________________________________
> Firewalls mailing list
> [EMAIL PROTECTED]
> http://lists.gnac.net/mailman/listinfo/firewalls
>
> _______________________________________________
> Firewalls mailing list
> [EMAIL PROTECTED]
> http://lists.gnac.net/mailman/listinfo/firewalls
>

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to