Hi,
the meaning of the implicit rules is
- FW1HOST: The machine(s) where the Firewall--Module is installed
- GUIclients: The machines running the GUI
- FW1Management: The machine(s) where the Management-Module is installed.

In a distributed environment you will need the following "basic-rules" for the
management of a Check Point:

FW1Management   FW1HOST    FW1 and FW1_sam     accept
FW1HOST    FW1Management   FW1_log    accept
GUIclients     FW1Management   FW1_mgmt     accept

Hope it helps,
best regards
Matthias

http://www.fw-1.de


"L. Endjirgli" wrote:

> I want to disable implied rules and replace with only those I need.
> In the implied rules there are some that look like:
> ~FW1HOST  ~FW1HOST fw1 accept
> ~GUIclients  ~FW1management fw1_mgmt accept
>
> What is ~FW1HOST
> What is ~GUIclients
> What is ~FW1management
>
> Whould I replace those with workstations I create manually?
>
> _________________________________________________________________
> Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp
>
> _______________________________________________
> Firewalls mailing list
> [EMAIL PROTECTED]
> http://lists.gnac.net/mailman/listinfo/firewalls

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to