Firewall Wizards mailing list archives

Re: Interesting Telnet scenario


From: Kenneth_W_Fox () sbphrd com
Date: Thu, 9 Sep 1999 10:35:10 -0400

Here's a couple of thoughts.

     if you have more than one firewall on  the outside vfy that whichever
one is your default route out is seeing the packets.

     Assuming your using Solaris 2.5 or later: using a plug proxy might
work; however, it is more likely that you need to set up a clone of tn-gw
in /usr/local/etc/mgmt/rc and specifically call it in the netpermtable as
well as through the start up script. - this will get you telnet filtering
(as opposed to a plug board proxy) as well as some control over how it
behaves.

     email support () nai com if you have a contract, which you should have at
least a minimal level of email support, assuming you bought the product.

-- Ken




Current thread: