Here is great Linux FW.
http://www.fwbuilder.org once of the best.
I know many customers using it.

PB

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] On Behalf Of
cisco4ng
Sent: 22 August 2005 03:39
To: [email protected]
Subject: Re: [FW-1] FW-1: too many internal hosts (655) detected

on a serious note, I was told that with the configuration I described
definitely violate checkpoint EULA because the cisco router exists
solely for the purpose of having to avoid of having too many internal
hosts detected by CP.  If you think about it, hosts that are behind the
Cisco router have the default gw point to the Cisco router, not the CP
firewall.  However, because the router solely exists for the purpose of
"hide" NAT, that is a violation of EULA, according to CP.
 
Cisco is overpriced too but I am willing to pay for it because in
general, cisco TAC is pretty good.  Checkpoint TAC, for the most part,
is non-existant.  At $500 per call for Checkpoint TAC, that is way more
expensive than an escort service.  At least, I get some joys with the
escort service but nothing but headache from Checkpoint.
 
cisco4ng

Reinhard Stich <[EMAIL PROTECTED]> wrote:
At 15:43 20.08.2005, you wrote:
>
>This may violate checkpoint licensing agreement but what the hell. 
>Checkpoint software is overprice anyway so this makes sense.

if you say that you shouldn't use a cisco device, cisco is as overpriced
as checkpoint. you should use a linux box.

serious:
you shouldn't tell users to violate the license agreement. if your hosts
don't have the firewall as default-gw this is ok with checkpoint eula.

cheers
reinhard

--
Reinhard Stich ASSIST [EMAIL PROTECTED] Internet Security AG,
1150 Wien, Johnstrasse 29
Tel: +43 1 3709440 RS784-RIPE Fax: +43 1 3709440-333 


__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to