Firewall-1

[FW-1] Enable/Disable IP forwarding/routing

Subject: [FW-1] Enable/Disable IP forwarding/routing
From: Olaf Lange <Olaf.Lange AT METAGEN DOT DE>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Mon, 2 Jun 2003 17:52:09 +0200
Dear all,

as I found there are some inconsistencies in public literature regarding
to Firewall-1 installations. Perhaps somebody can explain what's right :-)

In  "CCSA Next Generation Check Point Certified Security Administrator
Study Guide" (ISBN 0-07-219420-0 from McGraw-Hillx) he says "In Solaris,
IP forwarding is enabled by default and should be disabled." As well the
 processing of source routed packets should be disabled.

But in Sybex "CCSE NG Check Point Certified Security Expert Study Guide"
the authors writes "....be sure the machines properly route packets
between each network interface. Be sure that IP routing/forwarding is
anabled in your OS and the routing tables are correct."

What's the truth ? I am a little bit irretated :-(

Thx

Olaf

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>