I've seen some discussion on Citrix ICA client usage w/ firewall-1, and I've
read phoneboy's FAQ's etc. I've got the proper things ready, but I'm unsure
of the actual rule's for the rule base.

I've got a rule saying the encrypted clients (secure remote) can get the to
the citrix server on TCP port 1494. Now, according to the ICA docs, it then
connects back to the client via TCP ports above 1023. I know that 4.1 has a
service called "winframe" do I just use that simple rule and let it be
handled? But what about the return traffic, will it still hit the correct
rule? or do I need to create an outbound rule for the citrix server to get
to the ICA client.

Maybe I'm not thinking, but I'm a bit confused..

Thanks
will




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to