TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED] Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------
>From [EMAIL PROTECTED] Mon Jan 3 14:21:18 2000
Return-Path: <[EMAIL PROTECTED]>
Delivered-To: [EMAIL PROTECTED]
Received: from loki.iss.net (loki.iss.net [208.21.0.3])
by phoenix.iss.net (Postfix) with ESMTP id 21E5516007
for <[EMAIL PROTECTED]>; Mon, 3 Jan 2000 14:21:18 -0500 (EST)
Received: from proxyb1.tampabay.rr.com ([EMAIL PROTECTED] [24.92.1.11])
by loki.iss.net (8.9.3/8.9.3) with ESMTP id PAA09840;
Mon, 3 Jan 2000 15:26:15 -0500
Received: from jrezabek2 (242847hfc85.tampabay.rr.com [24.28.47.85])
by proxyb1.tampabay.rr.com (8.9.3/8.9.3) with ESMTP id OAA19302;
Mon, 3 Jan 2000 14:14:06 -0500 (EST)
Message-Id: <[EMAIL PROTECTED]>
X-Sender: [EMAIL PROTECTED]
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.2.2
Date: Mon, 03 Jan 2000 14:14:08 -0500
To: [EMAIL PROTECTED], [EMAIL PROTECTED]
From: John Rezabek <[EMAIL PROTECTED]>
Subject: Re: Question about RealSecure Network Engine with Stealth
Cc: [EMAIL PROTECTED]
In-Reply-To: <933F21746586D31187FB005004A968642A0CCB@ALERCE>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format=flowed
Sender: [EMAIL PROTECTED]
Approved: fnord.pass
Christian,
The Non-Stealth Card - the one without the stack cannot communicate with
the FireWall-1 being there is not IP address associated with it. The
Internal card your described would be the interface that re-configures the
FW-1 configuration using OPSEC's SAMP protocol. The only responses that
actually get initiated from the Stealth (Monitoring Card) is the RealSecure
Kill option, due to the information required in RESETTING that connection.
I hope this helps. If you have any other questions please let me know.
Thanks
John
At 07:01 PM 12/15/99 -0300, [EMAIL PROTECTED] wrote:
>Hello,
>
>I'm a channel of ISS in Argentina and I've a question about the stealth
>mode of the Network Engine Module.
>
>I know that, with this configuration, the external adapter card is
>connected to the monitored network segment and it doesn't have a
>protocol stack bound to it (so it doesn't have an IP address). On the
>other hand, the internal adapter card is connected to the internal
>network segment and has a full TCP/IP protocol stack with an IP address.
>
>In our project, we have a FireWall-1 between the external network
>segment (Internet) and the internal network segment (Intranet). We want
>to use the option that let to RealSecure Network Engine "Inhibit and
>Close" some connection through the Firewall-1.
>
>My question is:
>
>Is possible with the Stealth Configuration to obtain that functionality
>with the RealSecure Network Engine using the internal adapter card for
>the connection with the FireWall-1?
>
>Best regards,
>
>
> > Ing. Christian IZARRA
> > Coordinador Soporte Pre-Venta
> > Dpto. Ingenieria
> > e-mail: [EMAIL PROTECTED]
> >
> > REYCOM ELECTRONICA S.A.
> > Address: Bernardo de Irigoyen 678
> > (1072) Buenos Aires, Argentina
> > PH: (54) (11) 4345-2544
> > FAX:(54) (11) 4345-2944
> > Web: www.reycom.com.ar
> >
> <<Christian Izarra.vcf>>
>
"Adaptive Network Security for the Enterprise"
John M. Rezabek Phone: 727.517.1500
Technical Product Manager Fax: 727.517.9090
ISS Internet Security Systems, Inc. Pager: 888.784.6185
NASDAQ (ISSX) E-Mail: [EMAIL PROTECTED]