Re: how do you stop spam

2002-01-16 Thread Devdas Bhagat
On 16/01/02 13:24 +0530, Prathabacimman.M wrote: Hi, Try configuring your mail server for relay blocking such as authentication/ip address restriction. But this way it will your home server users to send a spam. The best way is to block at the Firewall level like exceeding the counts set

Re: 1:1 NAT desing question

2002-01-16 Thread dgillett
On 14 Jan 2002, at 17:45, Bruno Negrão wrote: Hy all, I'm using a linux firewall with two ethernet interfaces + iptables + masquerading (for windows clients) + NAT 1:1 (for application servers). My external interface, eth0, has 3 ip adresses (ip aliasing) destined to make 1:1 NAT for 3

Re: (no subject)

2002-01-16 Thread dgillett
On 12 Jan 2002, at 13:54, garentsen wrote: Hi all! not sure whether this is the right group for firewall issues in Linux but here goes: I've got two ISP's providing me with 10 Mbit and 3 Mbit internet access at home. I would like to set up my Linux (or any other OS) firewall to

How to test a firewall.

2002-01-16 Thread Vishal Mukherjee
I have installed a software firewall. Any site to check how secure the firewall is. with http://grc.com it shows all the port as closed. Thanks Regards ~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~ Vishal Mukherjee IRSSL Vashi 91.022.7896004.155 (voice) 022.7896020(fax)

Re: How to test a firewall.

2002-01-16 Thread Devdas Bhagat
On 16/01/02 14:34 +0530, Vishal Mukherjee wrote: I have installed a software firewall. Any site to check how secure the firewall is. with http://grc.com it shows all the port as closed. Scan your firewall from a machine outside your trusted network using nmap. Repeat from the trusted network.

RE: Off-topic or not? Is your son a computer hacker

2002-01-16 Thread Clinch, Adam
the best bit is the first comment posted.. i have been so blind! (4.50 / 2) (#1307) by Anonymous Reader on Wed Dec 5th, 2001 at 06:52:13 PM PST thank you so much for your insite into Hacking! I myself have 3 kids all of which use all of the above programs and have all read those

Re: Help to analyze the pop3 protocol

2002-01-16 Thread Bruno Negrão
Hy Frank, thank you for this suggestion. Can you explain which is the advantage in reseting the connection instead of simply dropping it? - Original Message - From: Frank Huang [EMAIL PROTECTED] To: 'Bruno Negrão' [EMAIL PROTECTED] Sent: Tuesday, January 15, 2002 11:34 AM Subject: RE:

RE: Help to analyze the pop3 protocol

2002-01-16 Thread Hiemstra, Brenno
If I may asnwer that question Resetting the connection will help continue the mail process... If you drop it... the process will continue after the connection is timed out... Resetting will speed up the delivery or retrieval of mail. Regards, Brenno -Original Message-

Re: Checkpoint FW-1 management other than GUI?

2002-01-16 Thread Volker Tanger
Greetings! Lauren Trinidad wrote: Is there any way to configure the Checkpoint FW-1 without using the GUI? I would like to remotely configure the firewall without having to open up a browser or GUI application. I'd rather use CLI (command line interface), FTP or TFTP of a config file,

Firewall testing framework

2002-01-16 Thread Siddhartha Jain
Hi, I am in the process of preparing a framework/parameter list on which a firewall would be tested. Here are some tests i can think of on which a firewall should be tested: 1. Sustained TCP connections, thoughput number. Eg. FTP 2. Short-lived TCP connections, throughput, number, connection

RE: How to Block Morpheus, Napster, etc.

2002-01-16 Thread Smith, Steve
I orginally wrote this for my boss and his home network. As I state in my original message, I researched this but did not test a lot of the advice personally (no flames, I warned you not to take this at full face value). This writeup covers Morpheus and many other like-topic applications.

Re: Watchguard read sequence rules

2002-01-16 Thread simon chan
Hi all, watchgguard rules does not follow checkpoints top down approach. Instead, it acts on the packet such that the most specific rules will have greater precedence over the more general rules. e.g. if there's 2 rules. * Any Any Deny FTP * host1 Any Permit FTP The sequence of the rules

Re: Watchguard read sequence rules

2002-01-16 Thread Michaelsen, Nils
Hi! Watchguards rulebase ordering is described in the User's Guide. Look for the Key word Service precedence Nils ___ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls

Communications failure after installing Watchguard

2002-01-16 Thread Katie Kuehn
I recently installed a Watchguard Firebox. Originally, it appeared that all mail from my Exchange 5.5 server was sending and receiving to all types of mailservers. Come to find out that there are two mail servers in the building right next door to us that we are unable to send mail to or

Cisco Security Advisory: Hardening of Solaris OS for MGC

2002-01-16 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Cisco Security Advisory: Hardening of Solaris OS for MGC Revision 1.0 For Public Release 2002 January 16 08:00 (UTC -0800) Summary The Media Gateway Controller (MGC) product is installed on top of

Remote connection with CheckPoint

2002-01-16 Thread Guido Fraietta
Hi all, Iuse Check Point VPN-1 FireWall-1 Version 4.1 and I need to connect to it from a remote host to run the fw policy editor visual tool. I succeed to start the tool from the remote machine, but when it tries to connect to the server, after "Loading EncryptionMethod" mask,I have the

Re: 'switch security'

2002-01-16 Thread dgillett
On 15 Jan 2002, at 19:55, Paul D. Robertson wrote: Many folks aren't security professionals, they're people stuck doing a job they don't have a great grasp of, ... IF they would go do something they're good at, maybe *I* could have their job DG

pix firewall managment question.

2002-01-16 Thread bob bobing
before i try to reinvent the wheel i thought i would ask around about this. Is there anything out there that will get all forms of access lists from a pix, add them to so some kind of data base (daily). Once received do some checks to see if anything has been added (email alert if something has),

RE: Two ISP's

2002-01-16 Thread Frank
Radware's Link-Proof will do it without BGP. However it's $$$ On Wed, 16 Jan 2002, Kotakoski Harri (EXT-Novosys/Copenhagen) wrote: In this case you could use any router capable of handling BGP (such as Cisco 72xx series) or Firewall like Nokia IP series (starting IP440). Cisco 72xx not

Re: S-Box

2002-01-16 Thread Leonardo Spalenza
Hi, The S-Boxes are used by the DES algorithm. The S-Box receive 6 bits as input and return 4 bits block after diffusion and confusion functions. All the implementations of DES use S-BOX, including Checkpoint Firewall-1. by Leonardo Spalenza [EMAIL PROTECTED]

Question

2002-01-16 Thread Jamie
I'm looking for a firewall for a personal computer using XP, any suggestions. Please advise

RE: Question

2002-01-16 Thread Dan McGinn-Combs
Title: Message stop! don't move! don't spend! XP has a built in firewall!!! check it out! Dan -Original Message-From: Jamie [mailto:[EMAIL PROTECTED]] Sent: Wednesday, January 16, 2002 10:10 AMTo: [EMAIL PROTECTED]Subject: Question I'm looking for a firewall for a

Concerning Firewalls digest, Vol 1 #449 - 9 msgs

2002-01-16 Thread fkafka271828
My background is Pure/Applied Mathematics, not Computer Security or Networking, but I do have questions concerning this portion of a previous post which I have copy/pasted. Please read it: CSCdv24925 It is possible to read stored configuration file from the Storage

RE: Question

2002-01-16 Thread Carl E. Mankinen
Title: Message Time to dump that CheckPoint stock Boy, I feel much better now that I have Microsoft selling me on security products... -Original Message-From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Dan McGinn-CombsSent: Wednesday, January 16, 2002

Re: Question

2002-01-16 Thread ME
Title: Message http://www.microsoft.com/windowsxp/pro/using/howto/networking/icf.asp stealthmode316 - Original Message - From: Dan McGinn-Combs To: [EMAIL PROTECTED] Sent: Wednesday, January 16, 2002 1:45 PM Subject: RE: Question stop! don't move! don't

RE: Question

2002-01-16 Thread Network Operations
ROFL, Thats almost as funny as that Your son is a computer hacker piece cheers.. Dan McGinn-Combs [EMAIL PROTECTED] 01/16 10:45 AM stop! don't move! don't spend! XP has a built in firewall!!! check it out! Dan -Original Message- From: Jamie [mailto:[EMAIL PROTECTED]] Sent:

Re: Question

2002-01-16 Thread ME
Title: Message I hope your joking. Right? :-) stealthmode316 - Original Message - From: Carl E. Mankinen To: [EMAIL PROTECTED] Sent: Wednesday, January 16, 2002 2:02 PM Subject: RE: Question Time to dump that CheckPoint stock Boy, I feel much

Re: Question

2002-01-16 Thread Mike Fetherston
yeah, i just about choked when i read that. - Original Message - From: Network Operations [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Wednesday, January 16, 2002 2:05 PM Subject: RE: Question ROFL, Thats almost as funny as that Your son is a computer hacker piece cheers..

RE: Two ISP's

2002-01-16 Thread David Lang
although that's jsut doing dynamic DNS. David Lang On Wed, 16 Jan 2002, Frank wrote: Date: Wed, 16 Jan 2002 09:26:34 -0800 (PST) From: Frank [EMAIL PROTECTED] To: Kotakoski Harri (EXT-Novosys/Copenhagen) [EMAIL PROTECTED] Cc: [EMAIL PROTECTED] Subject: RE: Two ISP's Radware's

Using Cisco IOS firewall feature set

2002-01-16 Thread Eric Appelboom
Title: Message I amlooking at complimenting ourFW-1's withswitches installed with theCisco IOS firewall feature set. Iwould like to implement this on 6500 switches also using layer 3 switchingso inspection can be done on switches and not on fw nic. We primarily would like to reduce

SOCKS Question

2002-01-16 Thread ZOERNER, KENNETH R, ALBAS
Does anybody out there know of a vendor who makes a SOCKS V5 compliant firewall appliance? Short of that, what software vendors sell SOCKS V5 server? Thanks. Kenneth R. Zoerner ATT Labs Firewall Development M, T, Th, F (847) 407-7609 W (847) 516-8630 Cell: (847) 226-7480 [EMAIL PROTECTED]

CISCO VPN

2002-01-16 Thread Maung, Than Contractor
Title: CISCO VPN I'm trying to set up a Cisco VPN 3000 box using NT domain authentication and having some problems. Problem 1. When I configured PPTP encryption required on the VPN box, I will get an 691 error User name/ password wrong message. (I'm using a 95 laptop and Microsoft VPN).

RE: Question

2002-01-16 Thread Steve Smith
Come on now, we have our networks covered by a PII with XP as the firewall. Works great! -Original Message- From: Mike Fetherston [mailto:[EMAIL PROTECTED]] Sent: Wednesday, January 16, 2002 1:43 PM To: Network Operations; [EMAIL PROTECTED] Subject: Re: Question yeah, i just about

RE: Question

2002-01-16 Thread Clark, Steve
ZoneAlarm Pro if you want software based Netscreen 5 for hardware based. My preference Steve Clark Clark Systems Support, LLC AVIEN Charter Member Who's watching your network? www.clarksupport.com 301-610-9584 voice 240-465-0323 Efax   The data furnished in connection with this

RE: Question

2002-01-16 Thread Paul Robertson
On Wed, 16 Jan 2002, Dan McGinn-Combs wrote: stop! don't move! don't spend! XP has a built in firewall!!! check it out! Dan Which doesn't filter broadcasts if I recall correctly... Paul - Paul D. Robertson My

RE: How to Block Morpheus, Napster, etc. (Adam Mead)

2002-01-16 Thread Janbaz Qamar
This shouldn't be an issue for an ALG firewall where all the 65000+ ports are marked closed by default and you open ports only as they are needed. Checkout SecurIT Firewall, formerly known as Blackhole. Cheers Janbaz From: Egdares Futch <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Subject: RE: How

Re: How to test a firewall.

2002-01-16 Thread Florian Hobelsberger / BlueScreen
I didn't check all of these links, http://security.norton.com/default.asp?productid=symhomelangid=devenid=sym http://www.dslreports.com/tools (quite large as far as i know) http://scan.sygatetech.com/ so it could be that not all of them still work. Good luck and have fun :) Mostly these are

RE: SOCKS Question

2002-01-16 Thread Ben Nagy
The NAI e-ppliance (Gauntlet) supports SOCKS. I've never been interested enough to remember which versions though. Cheers, -- Ben Nagy Network Security Specialist Mb: +61 414 411 520 PGP Key ID: 0x1A86E304 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On

RE: SOCKS Question

2002-01-16 Thread Peter Merrick
Hi Kenneth Not 100% sure about SOCKS complianty firewall appliances, but the Permeo e-border products (http://www.permeo.com/products/products.htm) may meet some of your needs. Alternatively, (not an appliance) the IBM Secureway firewall product supports tcp and udp apps through socks v5

RE: Remote connection with CheckPoint

2002-01-16 Thread Abdul Sayeed
Hi Guido, Add your remote machine as GUI client in the Management Module and you shoulddefine some userid who can access the policy editor to open in ro or r/w mode. any more clarifications revert back Rgds Abdul Sayeed -Original Message-From: Guido Fraietta

Re: Question

2002-01-16 Thread Allen P. Numerick
Hmm... XP's secure... that is...If you don't mind appling patches every week. Oh...and that's why MS uses checkpoint. And SUN boxes for there web servers. Who would have ever thought. Install XP's builtin firewall, then give us the IP address, we'll test it for you... along w/ about 1000 of my

Checking logs through IPSO

2002-01-16 Thread Stephen Pinto
Hi, yesterday when i was viewing the firewall logs through the checkpoint GUI, i got a message Server busy cause i ran exporting logs when it was just aroung 1500 records to a text file. After that i got disconnected from the Mgmt server. I could'nt use the checkpoint GUI neither to see/ modify

RE: SOCKS Question

2002-01-16 Thread bob bobing
you could also pick any proxy based firewall out there, and just install NEC's socks5 proxy (does cost money) www.socks.nec.com --- Peter Merrick [EMAIL PROTECTED] wrote: Hi Kenneth Not 100% sure about SOCKS complianty firewall appliances, but the Permeo e-border products

Tiny Firewall

2002-01-16 Thread aqeel
You can use Tiny Firewall for Nortons Personal Firewall. -- ___ Firewalls mailing list [EMAIL PROTECTED] http://lists.gnac.net/mailman/listinfo/firewalls