|
Posted by Tony on December 29, 2006, 9:04 am
If you were Registered and logged in, you could reply and use other advanced thread options
Well i'll tell you dogbreath now thast you mentioned checkpoint as in checkpoint
software i am looking for various short sales starting around january 4th 2007.
January
will be at least a 10 percent down month for the markets and the next couple of
years
should see the dow give back at least half and the foreign markets give back at
least
three quarters.
Dogbert wrote:
> Hi everyone,
>
> I'm managing some firewalls for our corporate lan and I'm trying to optmize the
> current rulebase in order to have better performance and simplify the
management
> task.
>
> Actually we have 4 different firewalls (Checkpoint NG with AI), 2 for
perimetral
> security and the other 2 for intranet security and we are using a total of 85
> rules (some of them are applied only to specific firewalls while others are
> applied to all the systems). All this is managed from a central Management
console.
>
> I'd like to know how checkpoint work through the rulebase.
> I already know that they are checked sequentially until a rule is matched, but
i
> need more information to fine-tune this process.
>
> 1) is it possible/advisable to define different policy packages for different
> firewalls and work with them separately?
> 2) does a firewall receive a policy containing only the rules referring to it
or
> every policy defined and then it check only its rules ?
> 3) is better to have one big rule grouping a lot of host, network and services
> or more simple rules (with few objects for each one) ?
>
> Thanks
> Riccardo
>
> --
> --------------------------------------------------------
> - Togli NO SPAM per rispondermi direttamente -
> --------------------------------------------------------
> - http://www.riccardofontana.it/ -
> --------------------------------------------------------
> - -
> - Monsieur Perrier: "Lei cosa ne pensa ?" -
> - MrWong: "Io perplesso." -
> - Alce: "Io SONO perplesso... ci vorra' un -
> - verbo qualche volta.... lei mi porta -
> - alla PAZZIA !!!!!! -
> - -
> --------------------------------------------------------
|