1) Your best bet is to download webtrends at opsec.com and see if it meets
your needs. fw-1 doesn't have an easy way of 
doing this. Floodgate-1 with Real time monitor does some of this, at a hefty
price.

2) FW-1 doesn't take advantage of additional processors. (yet)

3) Not that I have seen. What need do you have?

4) Your best bet is to save the rulebase when this happens, and begin a new
one. BTW- there is an entry when you force a new policy down.

Thomas Poole

-----Original Message-----
From: Colin Boland [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, August 08, 2000 9:20 AM
To: [EMAIL PROTECTED]
Subject: [FW1] Multiple questions



I have 4 questions this morning, so to save on email header electrons I have
combined them into one email. Assume Firewall-1, Version 4.1, SP1.

1. Is there a way monitor active outbound connections? I can watch them in
the log viewer but is there graphical way of viewing real time stats. on
inbound/outbound traffic? The ability to drill down to the IP address level
would be a bonus. Being able to see that IP address x is using 50% of the
bandwidth for a FTP session of a movie trailer wouldbe most helpful. I been
doing some reading on the Reporting Module but it seems to use only
historical data from the log files.

2. Can Firewall-1 use multi-processor when running on Windows NT?

3. In Policy, Properties you can set the timeout for TCP sessions. Is there
a way to set different values for inbound and outbound traffic?

4. Is there a way to archieve the rule base with the log files? The problem
we run into is that we make changes to the rule base and then the log files
no longer match up to the rule number. The only way we found around this is
to print off a copy of the rule base before we make changes and to keep that
piece of paper around incase we need to do some log file reconsiliation. Has
anyone found a better solution for this problem?

Thanks in advance,
Colin



============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to