I would strongly suggest that you make your firewall a
dedicated machine.  The fact that your firewall is
expected to serve mail, and who know what else,
compromises the firewall concept.  I believe CheckPoint
recommends that you disable all non-vital services on
NT if it is to be a firewall.
If you are concerned about buying another NT license
and/or another powerful machine, consider running IPFW
on FreeBSD on an old low-end Pentium.  I have two such
firewalls running currently and they work flawlessly.

Andrew Cook
[EMAIL PROTECTED]

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Chris Thompson
Sent: Wednesday, September 22, 1999 6:05 PM
To: [EMAIL PROTECTED]
Subject: [IMail Forum] Multiple NICs


I have a question somewhat related to one posed yesterday about binding
IMail to only specific IPs.  If I have IMail bound to only IPs assigned to
one NIC -- for example, I have 5 IPs bound to one physical NIC -- will IMail
still answer up for IPs bound to the second NIC?  I haven't
tried this yet, but I have plans to install CheckPoint FW-1 on the same box
as IMail, and preventing IMail from binding to IPs on my external internface
(the second NIC) is pretty important.  Has anyone done this?  I think I've
heard someone talking about using MS Proxy Server before.
Maybe you ran into a similar scenario?


-----------------------------------------------------------
Find old friends... make new ones.  http://www.WeAlumni.com
Personalized e-mail, chat, contact book, calendar, & community -- FREE!
Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.

Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

Reply via email to