One thing to consider is hw much traffic will you be logging.  Will you  be
getting a half million hits a day?  This will determine the size of the
server needed.  The next thing to consider is putting the management server
on its OWN network.  You can put is on a regular network without impacting
it too much, but the management server has ALL of the sensitive info on it.
If it were me I would like to have is separated from everything.

You will also have to either setup connect control or have the firewalls
setup as Firewall Modules only.

-----Original Message-----
From: Chuck Melanson [mailto:[EMAIL PROTECTED]]
Sent: Thursday, August 24, 2000 12:30 PM
To: [EMAIL PROTECTED]
Subject: [FW1] Centralized Logging (e.g. multiple enforcement points,
one mgmt console)



Anyone have experience in actually logging traffic from multiple fw
modules on the same net back to a central management console?

Any ideas about traffic caused by the logging, or any design specifics
that should be taken into consideration before implementation?

TIA,
Chuck.


============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to