I am going to take a shot at question number 2. When you buy checkpoint running on a nokia box it comes with a pre-hardened version of unix (bsd if I am not mistaken).
Sorry I can't answer the other 2 (thought I would like to know the answers myself). HTH -----Original Message----- From: Mario Behring [mailto:[EMAIL PROTECTED]] Sent: Friday, September 28, 2001 8:47 PM To: [EMAIL PROTECTED] Subject: Questions about fw-1 Hi list, I have the following questions about fw-1 and checkpoint products: 1- FW-1 works with Statefull inspection technology, but is there any way to configure fw-1 to work both as packet filter and as application proxy gateway, just like a hybrid firewall software would do ?? 2- FW-1 does not perform the OS hardening at installation time like IBM SecureWay Firewall does, but does anybody know some CheckPoint product or module that perform this task before fw-1 installation ? Also, is there any CheckPoint tool that checks the OS for configuration problems ? 3- Do fw-1 (or CheckPoint) have an anti-tampering tool, i.e., a tool that prevents system files from being altered and verifies file authenticity ? I need these information to compare FW-1 with other products. Any help would be appreciated. Thanks in advance. Mário __________________________________________________ Do You Yahoo!? Listen to your Yahoo! Mail messages from any phone. http://phone.yahoo.com