-----Original Message-----
From: Don Leeper [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, July 25, 2001 9:23 PM
To: '[EMAIL PROTECTED]'
Cc: '[EMAIL PROTECTED]'
Subject: [FW1] Anti-spoofingI was wondering if someone could give me your input on anti-spoofing. I have 3 interfaces on my FW:
DMZ 192.168.2.1
External 63.64.1.1
Internal 192.168.1.1
I have a DNS server and web server sitting on the DMZ. Which needs to be open to the public.
I have my email server and one web server on the Internal. They need to be accessible to the public as well. All addresses that are for the public are nated. Could someone tell me how you would set up the anti-spoofing on the FW that won't affect my setup but protect me? I noticed in my logs that someone was trying to get in using private addresses. Thanks for your help in advance. (I did look it up but I think its better to hear how others do it!) Kind of confusing....
Donnie Leeper
Title: Anti-spoofing
Hi
Don,
you
need to enable
External interface - " Others" .
wherever, you have natted addresses coming into
picture,
create a specific group which includes your internal
network address and your natted addresses
so,
in your case, it will be,
DMZ-
specific ( which includes 192.168.2.1 plus netted addresses of DNS and web
server)
Internal- specific ( which includes 192.168.1.1 plus
natted address of email server and web server)
In
case, you do not have any natted addresses on your internal network, you can
enable " Thisnet" which should work...
you
can keep spoof tracking to "Log" or "alert"
this
has worked for me....hope it helps you........
rgds,
Pradeepa
- [FW1] Anti-Spoofing Nick Claassen
- [FW1] Anti-spoofing Tom Sevy
- Re: [FW1] Anti-spoofing Martin H Hoz-Salvador
- RE: [FW1] Anti-spoofing Thomas . Poole
- RE: [FW1] Anti-spoofing Tom Sevy
- [FW1] Anti-Spoofing Don Leeper
- [FW1] Anti-spoofing Don Leeper
- RE: [FW1] Anti-spoofing Josh Medina
- RE: [FW1] Anti-spoofing Pradeepa G
- RE: [FW1] Anti-spoofing Ashleigh Martin
- Re: [FW1] Anti-spoofing Josh Medina
- RE: [FW1] Anti-spoofing Roelandts, Guy
- [FW1] Anti-Spoofing Jim Low
- Re:RE: [FW1] Anti-spoofing Cathy Tebo
- [FW1] anti-spoofing secureboy
- [FW1] 2nd external interface on FW Ivan More
- Re: [FW1] 2nd external interface on FW Rajeev Kumar
- RE:[FW1] anti-spoofing Hawkins, Michael
- RE: [FW1] anti-spoofing Rolf-A . Baumann
