[FW1] Monitoring Firewall-1

2001-04-16 Thread Velasquez Venegas Jaime Omar
What do you use for Firewall-1 Monitoring? I mean , due to firewall-1 is basically a single point of failure , do you have any way to monitor the service so when it is down you should be warned about with an email or even better to your pagger? I am running Fw-1 on AIX but I would be glad to hear

RE: [FW1] OT: harden solaris

2001-04-16 Thread Chris Arnold
I'm not sure I follow you. While all devices under Solaris (Unix in general) are technically files, you don't normally mount individual files unless they are block files (/dev/dsk/* for example). gzip and snoop don't fall into this category. Do you want to mount an encrypted filesystem from a

RE: [FW1] Passed CCSA.

2001-04-16 Thread Jorge L. Avelar
If you decide to take the CCSE exam on version 2000, you will get at least 60% of the questions on VPN. I have exam notes that I drew up and can forward to you both. In my notes, I've listed many of the answers to questions that I received when I took the exam on the first try and failed it by a

[FW1] Ports.

2001-04-16 Thread Sridhar Gupta
Hi, Can any one pls tell me what these ports are used for and purpose of this ports. Port No 23434 and 1086. Thanks in advance. Regards, Gupta. _ Chat with your friends as soon as they come online. Get Rediff Bol at http://bol.rediff.com

RE: [FW1] Strange FW behaviour with Proxy

2001-04-16 Thread METE EMINAGAOGLU (IT)
Title: RE: [FW1] Strange FW behaviour with Proxy Hi, today, I have faced exactly the same problem, and don't know how to solve it. Could please s.one help us to get this through? I don't know Mike's conf. However, I'm using Checkpoint FW4.1 SP2 on Nokia IP650. No proxy arps or other special

Re: [FW1] Slightly of topic reg no of cpu's in a unix system

2001-04-16 Thread Mario Kadastik
Hello Darren   well for how many processors are in the system question you might want to do:   cd /usr/platform/sun4u/sbin ./prtdiag   but dunno how to look for procs on what cpu ... You might just do ps -efa -o "user pid ppid pcpu args" to see what proc uses how many % of cpu and guess :) Bu

[FW1]

2001-04-16 Thread METE EMINAGAOGLU (IT)
Title: Hi everyone, I'm using Checkpoint FW1 4.1 SP 2 as the management software, on Nokia IP650 3.3-FCS3 hardware platform. The Nokia FW went down unexpectedly and couldn't be reactivated until I manually rebooted from the device itself. When I traced down the logs, I discovered an unusual

[FW1] RE: Unix script...

2001-04-16 Thread Shaw, Marco
Yes, it will/should work if you exit runlevel 3 by either rebooting or going down to 2, then back up to 3. You will have to have appropriate 'start' sections for it to work as expected. Otherwise, do a 'man crontab' or 'man nohup'. If you start the job from cron, it will not die, and nohup is

RE: [FW1] configure fw

2001-04-16 Thread Goetz, Jarrett
Is there a file somewhere than you can look at to see who is in your blocked list?   Thanks.   JTG -Original Message-From: Aeon Hale [mailto:[EMAIL PROTECTED]]Sent: Friday, April 13, 2001 09:28To: x man; [EMAIL PROTECTED]Subject: Re: [FW1] configure fw while your in th

RE: [FW1] FTP Problems 4.1SP3

2001-04-16 Thread Goetz, Jarrett
Title: RE: [FW1] FTP Problems 4.1SP3 John, under almost all circumstances you do this just on the management console.  When you compile and push the new policy the changes takes to the firewall.  A few things though, keep in mind any changes you make to the base.def will happen on all the enfo

RE: [FW1] GUI Clients!

2001-04-16 Thread Goetz, Jarrett
On another note, is there any way to add a range of addresses to the GUI client, or possibly an address that would allow all IPs for say some temporary maintenance mode you go into as a company (of course this would be a bad idea); or maybe even a certain SR user if you weren't using IP NAT

[FW1] Strange Alert

2001-04-16 Thread Wonder Kid
Repost the following. Need help, thanks. I am seeing strange alert message from my firewall log. The destination IP was not the internal IP address, but somehow firewall had an log entry for it. Detail of the entry as below: : : Type: alert Action: accep

RE: [FW1] Doing NAT to more than one public network

2001-04-16 Thread Chris Arnold
Add another NIC as it will eliminate one single point of failure (presumably you only have one FW platform if you are even considering binding additional IP addresses). Purchase an unlimited license as well. Actually, I wonder if you could bind multiple addresses to one interface and still use

[FW1] Dual NAT with FW-1 on NT

2001-04-16 Thread Sumit Chopra
Hi All, I am having problems with setting up dual NAT on FW-1(4.1) on NT. My network configuration is : 1. 10.0.0.0 Network(External) 2. 192.168.0.0 Network(Internal) 3. FW-1 one interface with IP= 10.0.0.1 4. FW-1 second interface with IP=192.168.1.1 5. Host on 10.0.0.0 network with IP=10.0.0