Re: [FW-1] ftp problems - command ended without a new line

2003-02-25 Thread Stefan Funk
Hi You just have to edit this file on the management system. Then reinstall the security policy using the GUI. This should solfe your problem. Stefan - Stefan Funk, ITON-S Bank Julius Baer Co. Ltd.

[FW-1] 4.1 packet to tcp 256 gives cookie_length log and kills firewalls

2003-02-25 Thread Eric Appelboom
hi, Could someone check if this is a old bug or something new. If I use retina 4.9 to scan our fw-1 4.1 it causes them both to reboot or halt. We have a 2 node FW-1 4.1 running Stonebeat Fullcluster 2 on Solaris 5.7 In the case below I scanned the stonebeat virtual interface .50 When retina

[FW-1] NG FP3 - FWM LOGEXPORT

2003-02-25 Thread Christopher Collins
Is it possible to use wildcards in the FWM LOGEXPORT command? Here is what my batch file says: fwm logexport -i e:\logs\%year%-%month%-%day%*.log -o e:\logs\%year%-%month%-%day%*.log.txt -n Where: %year% = current year %month% = current month %day% = current day When I run this command, it

[FW-1] NG FP3 (Build 53328)

2003-02-25 Thread Leon Noble
Hi, Is this version of Secure Remote compatible with Firewall-1 ver 4.0 SP5 thanks Leon = To set vacation, Out Of Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail

Re: [FW-1] Office mode with SecuRemote

2003-02-25 Thread Messier, Michel
Robin, thanks very much for the explanation. I still have something that's unclear to me. I'm already using IP Pool NAT for the SR incoming connexions, therefore I already have an internal IP adress when coming through SR. How does that relate to the Office Mode IP Pool? Do I stop using IP Pool

Re: [FW-1] Vijay - http access logging

2003-02-25 Thread Symon Thurlow
To get really granular reporting, consider a product like WebMarshal Have a look at this http://www.vigilsoftware.com/ Symon -Original Message- From: Vijay Kumar [mailto:[EMAIL PROTECTED] Sent: 25 February 2003 12:44 To: [EMAIL PROTECTED] Subject: [FW-1] Vijay - http access logging

[FW-1] Redhat 7.3 CPfw1-41.6-SP6.i386.rpm conflicts

2003-02-25 Thread Andrei Grant
Hi When I try to install CPfw1-41.6-SP6.i386.rpm on Redhat 7.3 with 2.4.18-5 kernel installed I get the below; Even though compat-libstdc++-6.2-2.9.0.16.i386.rpm is already installed ! Can someone put me straight what is going wrong... rpm -ivh --force /home/andreigr/CPfw1-41.6-SP6.i386.rpm

[FW-1] RSH and FW-1 4.1 SP6

2003-02-25 Thread Mark Pace Balzan
Hi All, im having problems with rsh through the firewall (yes im aware rsh is not the best security practise) Setup: FW-1 4.1 with SP6 on SPARC Solaris 7 32bit I have an rsh client and rsh server running on linux. when these are connected on the same subnet, rsh between the two works perfectly

[FW-1] Transparent User Auth?

2003-02-25 Thread Hamilton, Kent
We use FW-1 NG SP2 on Secure Platform with mixed NT domains and Active Directory (Migrating to AD only). I've been asked to block specific users from browsing the web without forcing them to log in manually through the firewall. Is that possible without third party add-on's? I asked our vendor

Re: [FW-1] Transparent User Auth?

2003-02-25 Thread Lars Troen
It's possible to do this, but you need an addon, but it's not exactly a third party addon as it's Checkpoint software, namely MetaIP. Other and cheaper ways of solving this particular problem would be to use a proxy server that could utilise transparent user authentication. Both MS Proxy/ISA

[FW-1] Daniel Samaan/Forsythe is out of the office.

2003-02-25 Thread Daniel Samaan
I will be out of the office starting 02/25/2003 and will not return until 02/28/2003. I will be out of the on-site with a client all day Wed. and Th. Please call me on my cell if it an emergency 847-274-2034, thank you.

Re: [FW-1] RSH and FW-1 4.1 SP6

2003-02-25 Thread Crist Clark
Mark Pace Balzan wrote: Hi All, im having problems with rsh through the firewall (yes im aware rsh is not the best security practise) Setup: FW-1 4.1 with SP6 on SPARC Solaris 7 32bit I have an rsh client and rsh server running on linux. when these are connected on the same subnet, rsh

Re: [FW-1] Vijay - http access logging

2003-02-25 Thread Jim Laverty
Look at WebSense -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Symon Thurlow Sent: Tuesday, February 25, 2003 11:04 AM To: [EMAIL PROTECTED] Subject: Re: [FW-1] Vijay - http access logging To get really granular reporting,

Re: [FW-1] Transparent User Auth?

2003-02-25 Thread Hamilton, Kent
Does the MetaIP integration with FW-1 still work? We have 5.1 of it here and nowhere in the docs is it mentioned anymore. Of course I never got it to work correctly when I last tried it a couple years ago. -- Kent Hamilton [EMAIL PROTECTED] Manager - Systems Networking Hunter Engineering

Re: [FW-1] AW: [FW-1] SecurePlatform crashing

2003-02-25 Thread Lars Troen
What was your solution? I have now cleaned out the system and upgraded from 4.1 to SecurePlatform FP2 instead and so far it seems stable with the upgraded rule set and all. Lars -Original Message- From: Christian Osterbrink [mailto:[EMAIL PROTECTED] Sent: Monday, February 24, 2003

[FW-1] Problem with WEBSENSE on FW-1 on Windows 2000

2003-02-25 Thread boobe jouke
I have installed a FW-1 4.1 SP6 on Windows 2000 machine . I have installed on a different machine win2000 a Websense for URL filtering. Every 24 hours I have to reboot the Firewall machine to be able to use HTTP. I have reinstalled both machines and still having the same problem. Has anybody had

Re: [FW-1] Office mode with SecuRemote

2003-02-25 Thread Robin Frousheger
No problems Michel. IP Pool NAT and Office Mode IP Pool are complementary, and are again for slightly different purposes. As I understand it, IP Pool NAT facilitates Multiple Entry Point configurations where you may have several FW-1 gateways around the perimeter of you LAN/WAN. Each

[FW-1] SecurePlatform+additional software

2003-02-25 Thread Lars Troen
I'm currently in the process of installing SecurePlatform FP2 on a compaq server. As this box will be on a remote location I would really like to have some hardware monitoring agents that could notify me when something is wrong. Compaq has management agents that handles this. I downloaded the

[FW-1] Nokia ip650 + Nokia ip 330.Reset

2003-02-25 Thread X Xpid
I recently purchased nokia ip650 and nokia ip330.It seems some people in the office couldn't resist till next week and they started going through every menu possible that the box shows in hyperterminal when it is started the first time. question: how do i reset these boxes back to the state when

Re: [FW-1] Transparent User Auth?

2003-02-25 Thread Frank Darden
The Metaip UAM/UAT integration no longer exists. It has been superceded by a product called UserAuthority UserAuthority works independent of any DHCP server. It works quite well. Here is a description of one of the implementations I did

Re: [FW-1] Vijay - http access logging

2003-02-25 Thread Vijay Kumar
Hi, So does it mean that through Firewall -1 there is no way of having http logs ? If not granular at least some logs which have details about http acess and/or http usage ? Warm Regards, Vijay Kumar Triniti Advanced Software Labs. Ph: 040 - 2789 3938 2789 3939 Fax - 2789

Re: [FW-1] Nokia ip650 + Nokia ip 330.Reset

2003-02-25 Thread Bill
You can login to the console, and go to the /db directory. At least I think it's that directory, it has been a long time. f you are unsure, save the current configuration to a filename and do a search for it. Delete the file that contains the link to the actual configuration file and reboot the

Re: [FW-1] Vijay - http access logging

2003-02-25 Thread Damien Hart
I was trying to get my firewall to record the full URL in the log (which I was then extracting and cleaning up with some scripts) but in the end I gave up because I couldn't get it to work properly with ports other than port 80 - including https. If you want to play with it all you have to do is