Firewall-1

[FW-1] NG-AI: FTP URI, NAT, WORM Catcher

Subject: [FW-1] NG-AI: FTP URI, NAT, WORM Catcher
From: egonle <egonle AT NETSCAPE DOT NET>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 27 Aug 2003 13:37:54 -0400
HI,

I'm running NG AI on a solaris box. I would like to protect my ftp in the DMZ 
(private IP) using checkpoint's FTP Security Server. Additionally I would like 
the firewall to force the user to authenticate.

SmartDefense is configured to trace any ftp connections.

Rulebase looks like:
ftpuser@any   nat_ip   ftp  user_auth

Unfortunately FW-1 doesn't start the FTP Security Server. I can see that there 
are packets coming to the firewall but FW1 doesn't do anything with 'em.

I have the same problem when I enable the HTTP Worm Catcher. Any traffic from 
the Internet to the servers in the DMZ isn't handled. It's not possible to 
access dmz servers.

Any help on that?

Regards

__________________________________________________________________
McAfee VirusScan Online from the Netscape Network.
Comprehensive protection for your entire computer. Get your free trial today!
http://channels.netscape.com/ns/computing/mcafee/index.jsp?promo=393397

Get AOL Instant Messenger 5.1 free of charge.  Download Now!
http://aim.aol.com/aimnew/Aim/register.adp?promo=380455

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>
  • [FW-1] NG-AI: FTP URI, NAT, WORM Catcher, egonle <=