Hi

It�s the total number of ip addresses (except the ones on the external
interface) that the firewall "sees", which is the number of nodes protected
by it, what it computes as hosts to be under license, not only the ones
actually going through it. Obviously with netbeui on the internal pcs, the
firewall can see through broadcasts sent by these pcs to advertise on the
network, many machines, in fact any machine in your lan. So either you
upgrade your licence or put a router with two interfaces between your
internal network and the firewall ,which filters netbeui, as it is a  non
routable protocol and also make nat for any internal ip address to the ip
address of the router interface connecting to the firewall, so that any
internal machine is seen by the firewall as a unique ip address.

regards

jch
----- Original Message -----
From: "Mike Glassman - Admin" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Cc: "'fw-1 listserv'" <[EMAIL PROTECTED]>
Sent: Wednesday, July 12, 2000 4:05 PM
Subject: RE: [FW1] A license question


>
> Vu,
>
> Since the FW counts all IP addresses it sees, it's quite possible that it
> will discover much more then 25.
>
> In the case of having your network routers do a static route for all
> non-internall IP's to the FW for eg, you'll end up having your FW discover
> all the IP's.
>
> We had the same issue and ended up taking a much larger license count
(2000)
> because of this problem.
>
> Mike
>
> > -----Original Message-----
> > From: [EMAIL PROTECTED]
> > [SMTP:[EMAIL PROTECTED]]
> > Sent: a eaie 12 2000 14:29
> > To: [EMAIL PROTECTED]
> > Subject: [FW1] A license question
> >
> >
> > Hi,
> > I have FW-1 version 4.1 on Solaris 2.7 with 25 licenses.
> > How do FW-1 v.4.1 count the licenses on the internal LAN, are there only
> > IP-address that passing throught FW-1 on internal interface that will be
> > count?
> >
> > Regards
> >
> >
> >
> >
==========================================================================
> > ======
> >      To unsubscribe from this mailing list, please see the instructions
at
> >                http://www.checkpoint.com/services/mailing.html
> >
==========================================================================
> > ======
>
>
>
============================================================================
====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>
============================================================================
====

------------------------------------------------------------------
This email is confidential and intended solely for the use of the individual to whom 
it is addressed. Any views or opinions presented are solely those of the author and do 
not necessarily represent those of Sema Group. 
If you are not the intended recipient, be advised that you have received this email in 
error and that any use, dissemination, forwarding, printing, or copying of this email 
is strictly prohibited. If you have received this email in error please notify it to 
Sema Group sae Helpdesk by telephone on number
+34 91 4408888.
------------------------------------------------------------------



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to