Hi,
Assuming that you have a packet filtering router (as recommended ) in
front of your firewalls and these are configured to block all FW-1 RDP
connections except from the management server, then the risk of an RDP
exploit is reduced?
If the management server is on the same machine as a FW-1/VPN-1 module
and the fix is applied, and the disable FW-1 control connections. Do you
have to include a specific rule to permit the Management module to
communicate with the local FW-1/VPN-1 module and the remote FW1/VPN1
modules it administers?
Regards
Russell
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================