RE: Firewall-1 On NT

1999-10-13 Thread Drennan, Richard
Pardon the unsolitited comment but... the original question was: Does anyone know why Firewall-1 for NT recommends installing the software on a workgroup instead of a domain(member server)? If so, won't I have to setup separate accounts for each user? I'm planning on a DMZ with three NIC

Re: pix vs checkpoint

1999-10-13 Thread Lars Kronfält
Pardon me In release 5 of the PIX software, you got IPSec VPN compability and dont need any hardware card at any end. Version 5 was released like a week ago or something. The IPSec compability is very good. PIX workes as a branch office connection to a lot of other (IPSec) VPN boxes. And the

Re: Please teach me about Basic Concepts

1999-10-13 Thread spiff
Try here: http://129.105.116.5/fravia/howtosea.htm and here: http://packetstorm.securify.com/archives.shtml On Tue, 12 Oct 1999, Weijie Zhang wrote: Hi, Experts: Newer to firewall. Would you please teach me in plain language(is it possible? I have some working knowledge of TCP/IP.) (if

Re: Unknown internet traffic

1999-10-13 Thread Eric
Jeff Younker wrote: He's receiving ICMP 'administratively prohibited' messages in response to traffic from his machine. These ICMP messages could be generated by the netbios services encapsulated in TCP/IP. (Ports 137, 138, and 139 as I recall.) I thought that disabling the bindings on

router with NT

1999-10-13 Thread Dominique THIRY
Maybe a simple question: I have a NT box running NT4.0 workstation. IP forwarding is enabled on it. I have installed an NIC and an ISDN card (to connect to my Internet provider). Is it possible to use that NT box as a router between my firewall and the Internet ? May need additionnal

What is the best security show in Canada or the U.S.A.

1999-10-13 Thread Baribault, Gary
Let me qualify that question... I need to keep up with the following: Firewalls Intrusion Detection Virii and anti-virus software Hacker and Cracker activity Anything and everything else security I need show names, dates and web sites.. Please no

RE: Unknown internet traffic

1999-10-13 Thread Sweeney, Patrick
The really annoying thing is the Cable Companies consistently claim they do block this traffic. My experience is that you can get it blocked on your local segment by calling them up and complaining. Pretty sad. -Original Message- From: Eric [mailto:[EMAIL PROTECTED]] Sent: Wednesday,

Re: What is the best security show in Canada or the U.S.A.

1999-10-13 Thread Frederick M Avolio
I like: The Internet Security Conference. http://tisc.corecom.com/ The conference is going on right now. Next one in May 2000 in San Jose. See the site for info on what is going on this week to get an idea of its flavor. SANS conferences, especially the network security conference.

Re: router with NT

1999-10-13 Thread Dominique THIRY
The NT workstation's inside nic has no legal address(192.168.x.x), and its ISDN card has a dynamic address (changed at each dialing to the provider).It's just a PC dialing to the provider to receive a temporary legal address. The firewall behind that box is a Raptor V6, and does NAT

RE: Unknown internet traffic

1999-10-13 Thread Andrew Bastien
Probably want you want to do is disable the WINS client on the interface that's connected to the cable modem's network. If you have IP forwarding enabled, you might want to disable that as well (unless you're actually using it, of course). You might also be able to figure what what the

Re: router with NT

1999-10-13 Thread rwalker
It is possible to use NT Workstation as a router. Just enable IP forwarding and set up your routing table. What type of firewall are you using? "Dominique THIRY" [EMAIL PROTECTED] on 10/13/99 09:36:27 AM To: "FIREWALLS" [EMAIL PROTECTED] cc:(bcc: Rob Walker/SV/AUS/HARCOURT)

Re: What is the best security show in Canada or the U.S.A.

1999-10-13 Thread Frederick M Avolio
Addendum... Also, the Usenix Security Symposium, especially if you like hearing about current research. Fred - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.]

Re: Courses of Security

1999-10-13 Thread rwalker
New Horizons learning center offers a Certified Internet Security Professional certification. It's supposedly globally accepted. Check them out at http://www.newhorizons.com Javier Romero [EMAIL PROTECTED] on 10/13/99 02:30:49 PM To: [EMAIL PROTECTED] cc:(bcc: Rob

Re: Unknown internet traffic

1999-10-13 Thread Jason Leonard (Fuzz)
Eric wrote: Of course, what I really don't understand is why the cable company doesn't block the netbios traffic wherever and whenever possible. Bite yo' tongue! The last thing we need is some big corporation restricting our access to the Internet. Or, for that matter, anyone restricting

Re: What is the best security show in Canada or the U.S.A.

1999-10-13 Thread rwalker
I recently attended WebSec '99 in San Francisco in August. It's done by the MIS training institute and it was simply amazing. One week of really excellent info including penetration testing and firewall hardening. The people who taught the classes were from the DOD, Verisign, and other major

RE: Firewall for Redhat 6.0

1999-10-13 Thread Benjamin Conrad
I am using IPChains on a Linux box but would like the advantages of stateful packet filtering. Is the best package to use IPFilter or ..? Thanks, Ben. Ben Conrad NT Administrator, NOS Team GTE Internetworking 617.873.5146 [EMAIL PROTECTED]

Re: What is the best security show in Canada or the U.S.A.

1999-10-13 Thread Frederick M Avolio
At 04:38 PM 10/13/99 -0500, [EMAIL PROTECTED] wrote: I've heard that their is a SANS NT conference that covers Windows NT security. Do you know anything about it? A writeup should be on the SANS page. SANS usually does good stuff, though I have never gone to the NT training. They have

Re: Courses of Security

1999-10-13 Thread Ken Milder
There are plenty of resources. A well respected web site to peruse is http://www.sans.org At 02:30 PM 10/13/1999, Javier Romero wrote: Hi folks Do u know courses about Security Management, Security Assessment, response to hacking, or another one? TIA - [To unsubscribe, send mail to

Re: router with NT

1999-10-13 Thread Dave Gillett
On 13 Oct 99, at 16:36, Dominique THIRY wrote: Maybe a simple question: I have a NT box running NT4.0 workstation. IP forwarding is enabled on it. I have installed an NIC and an ISDN card (to connect to my Internet provider). Is it possible to use that NT box as a router between my firewall

Re: Courses of Security

1999-10-13 Thread Rory Rogerson
Check out http://www.gocsi.com .. .conference with seminars ... starts 15 NOV Rory Javier Romero [EMAIL PROTECTED] on 10/13/99 03:30:49 PM

Re: What is the best security show in Canada or the U.S.A.

1999-10-13 Thread rwalker
I've heard that their is a SANS NT conference that covers Windows NT security. Do you know anything about it? Frederick M Avolio [EMAIL PROTECTED] on 10/13/99 02:29:25 PM To: [EMAIL PROTECTED], [EMAIL PROTECTED] cc:(bcc: Rob Walker/SV/AUS/HARCOURT) Subject: Re: What is the best

TIS FWTK

1999-10-13 Thread Davis Ford
Hallo, I have a RH 6.0 box stripped bare, with FWTK installed. IP-forwarding=NO. IP-firewalling=YES. It is dual-homed, and it will be subnetted (Class C split into 2). Currently it is not because I am attempting to configure it correctly before I drop it in the network perimeter it is destined

CheckPoint Firewall Controls

1999-10-13 Thread edpaudit
1 - Are there any sites on the Internet that cann give me a detailed listing of the controls that are available or that should be enabled on a Checkpoint Firewall? 2 - Any suggestions on where I can configuration information on how to seriously limit access to the content going through this

Re: pix vs checkpoint

1999-10-13 Thread Lars Kronfält
Sorry for making you upset. Of course you must know this stuff, since CheckPoint and FW-1 is one of your largest products. I'm so sorry. On Wed, 13 Oct 1999, P. Capelli wrote: Lars Kronfält wrote: IMHO the PIX beats FW-1 in remote admin to. You can use the VPN client, tunnel in to the

CQRE'99 - Call for Participation

1999-10-13 Thread Detlef Hühnlein
Dear Listmembers! Sorry for crossposting. The Call for Participation below might be of interest for you. To register, please visit http://www.cqre.net . You might want to note that the early bird registration period already expires on Oct. 22, which is less than two weeks from now. I would