this is not true.
any does NOT mean any.
something that is closer to any would be:
s/any d/any p/highUDPports&highTCPports a/accept
s/any d/any p/any a/accept
AND many many modifications in your policy properties.
On Thu, 8 Feb 2001, Gill wrote:
>
>
> any means any. that means if you have 10.0.0.0 defined as an internal
> network and you have a rule that says s/any d/any s/any a/accept you have
> an open firewall, aka router. any means 0.0.0.0/0 every IP on the 'net.
>
> --gill
>
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================