I consider to change TrendMicro to Alladin eSafe 4.0 because of CVP
option. But now when You told me about such configuration with
trendmicro maybe I stay on it. I must test it on a few users if
authentication works.
We have CheckPoint NG R55 in cluster mode and 2 moduls as CVP servers:
TrendMicro antivirus and SecureComputing SmartFilter - URL filter
Pawel
________________________________
From: Marco Rubeck [mailto:rubi AT gmx DOT de]
Sent: Tuesday, February 22, 2005 11:16 AM
To: Serwatko Pawel
Subject: Betreff: RE: Betreff: RE: Betreff: [FW-1] CheckPoint and
TrendMicro
We have Checkpoint Firewall-1 and VPN-1, NG FP 3, HFA 326
Trend Micro Office Scan, Server Protect, Interscan Messaging Security
Suite
and Interscan Web Security Suite
If you have any questions concerning these products don't hesitate to
ask
Marco
-------Originalmeldung-------
Von: Serwatko Pawel <mailto:pawel AT rzesa.rzeszow DOT pl>
Datum: 02/22/05 10:57:27
An: Marco Rubeck <mailto:rubi AT gmx DOT de>
Cc: fw-1-mailinglist AT us.checkpoint DOT com
Betreff: RE: Betreff: RE: Betreff: [FW-1] CheckPoint and TrendMicro
ok, thanks
I've just been installing this product and try to configure it.
Thanks
Maybe I need some help later I mail to if You don't mind.
Greetings
Pawel
________________________________
From: Marco Rubeck [mailto:rubi AT gmx DOT de]
Sent: Tuesday, February 22, 2005 10:42 AM
To: Serwatko Pawel
Subject: Betreff: RE: Betreff: [FW-1] CheckPoint and TrendMicro
If I get you right ...
The users have to authenticate to get access to the internet?
You can configure user authentication on the proxy server (IWSS), e.g.
with LDAP
So you can restrict internet access for the users and grant it to the
proxy
There is only one problem I encountered so far :
If you want to visit something like www.mydomain.com:2167, i.e. a
website with a specific port,
that will not work via the proxy, you will have to disable the proxy on
the client to
view this site
Greetings
Marco
-------Originalmeldung-------
Von: Serwatko Pawel <mailto:pawel AT rzesa.rzeszow DOT pl>
Datum: 02/22/05 09:28:15
An: Marco Rubeck <mailto:rubi AT gmx DOT de>
Betreff: RE: Betreff: [FW-1] CheckPoint and TrendMicro
Hi
One question more
We have partialy authhentication configured on firewall in rule with
resource. That is our security policy that every user must be
authenticated by firewall. Is it possible to configure in this way and
safe firewall authentication?
Pawel
________________________________
From: Marco Rubeck [mailto:rubi AT gmx DOT de]
Sent: Tuesday, February 22, 2005 8:32 AM
To: Serwatko Pawel
Cc: fw-1-mailinglist AT amadeus.us.checkpoint DOT com
Subject: Betreff: [FW-1] CheckPoint and TrendMicro
Hi there,
we have the same configuration. We had Interscan Viruswall with CVP
enabled and now we changed it to Interscan Web Security Suite.
There's absolutely no problem with that, you only have to make sure that
all clients use the IWSS-Server as a proxy server.
The proxy server works for http and ftp, so you can alter your rules
that only the proxy can acces the internet via these services
Greetings
Marco
-------Originalmeldung-------
Von: Serwatko Pawel <mailto:pawel AT RZESA.RZESZOW DOT PL>
Datum: 02/21/05 14:54:26
An: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Betreff: [FW-1] CheckPoint and TrendMicro
Hello everybody.
I have a question about new TrendMicro product.
Currently we have Checkpint NG with TrendMicro Interscan Virus Wall
working as CVP server. As I know this kind of work (CVP) is not
available in new version - Trend Micro Web Security Suite. Does anybody
have such configuration? How is this work in new product without CVP
option?
Is this possible to work and how to configure new TrendMicro IWSS to
work with Checkpoint Firewall NG?
Thanks for any help with it.
Pawel
pawel AT rzesa.rzeszow DOT pl
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|