Search This Blog

Thursday, June 21, 2007

firewall-wizards Digest, Vol 14, Issue 12

Send firewall-wizards mailing list submissions to
firewall-wizards@listserv.icsalabs.com

To subscribe or unsubscribe via the World Wide Web, visit
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
or, via email, send a message with subject or body 'help' to
firewall-wizards-request@listserv.icsalabs.com

You can reach the person managing the list at
firewall-wizards-owner@listserv.icsalabs.com

When replying, please edit your Subject line so it is more specific
than "Re: Contents of firewall-wizards digest..."


Today's Topics:

1. Re: CyberGuard TSP packet filter (lordchariot@embarqmail.com)
2. ASA interface failover ? (Maen Ftouni)
3. Re: ASA interface failover ? (Keith A. Glass)


----------------------------------------------------------------------

Message: 1
Date: Mon, 18 Jun 2007 12:41:54 -0400
From: <lordchariot@embarqmail.com>
Subject: Re: [fw-wiz] CyberGuard TSP packet filter
To: "'Firewall Wizards Security Mailing List'"
<firewall-wizards@listserv.icsalabs.com>
Message-ID: <03E4244EB384485984BDC31568CA1C41@lordchariot.com>
Content-Type: text/plain; charset="us-ascii"

TSP does NOT use iptables in any way. It has its own completely proprietary
engine for packet-filtering.

_____

From: firewall-wizards-bounces@listserv.icsalabs.com
[mailto:firewall-wizards-bounces@listserv.icsalabs.com] On Behalf Of Graeme
Neilson
Sent: Monday, June 18, 2007 12:22 AM
To: firewall-wizards@listserv.icsalabs.com
Subject: [fw-wiz] CyberGuard TSP packet filter


Hi,

I was wondering if anyone knows what packet filter is used by Secure
Computing's CyberGuard TSP?

I suspect its iptables but does anyone know if it is vanilla iptables or
customised?
Any info appreciated.

TIA.

Graeme

-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://listserv.icsalabs.com/pipermail/firewall-wizards/attachments/20070618/1504c8c0/attachment-0001.html


------------------------------

Message: 2
Date: Wed, 20 Jun 2007 01:33:50 +0307
From: Maen Ftouni <mftouni@mdsa.com>
Subject: [fw-wiz] ASA interface failover ?
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.icsalabs.com>
Message-ID: <46785826.3010005@mdsa.com>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed

Hello all, we are planning to buy a new firewall and implement it in our
network, the only thing is that i am planning to connect the firewall to
2 switches, in case one link fail i want the users to connect to the
firewall using the other switch, so the firewall will basically be
connected to a port in each switch, kind of an interface failover, do
you know if this feature is available in ASA ? if not what firewalls do
support it ?

regards .

--

******************************
Maen A. Ftouni - CISSP
Senior security consultant
Mob : +966564296632
Tel : +96614790774 ext. 899
E-mail : mftouni@mdsa.com
******************************

------------------------------

Message: 3
Date: Wed, 20 Jun 2007 16:24:46 +0000
From: "Keith A. Glass" <salgak@speakeasy.net>
Subject: Re: [fw-wiz] ASA interface failover ?
To: "Firewall Wizards Security Mailing List"
<firewall-wizards@listserv.icsalabs.com>, "Firewall Wizards Security
Mailing List" <firewall-wizards@listserv.icsalabs.com>
Message-ID: <W5645224334223451182356686@webmail3>
Content-Type: text/plain; charset="us-ascii"


> -----Original Message-----
> From: Maen Ftouni [mailto:mftouni@mdsa.com]
> Sent: Tuesday, June 19, 2007 10:26 PM
> To: 'Firewall Wizards Security Mailing List'
> Subject: [fw-wiz] ASA interface failover ?
>
> Hello all, we are planning to buy a new firewall and implement it in our
> network, the only thing is that i am planning to connect the firewall to
> 2 switches, in case one link fail i want the users to connect to the
> firewall using the other switch, so the firewall will basically be
> connected to a port in each switch, kind of an interface failover, do
> you know if this feature is available in ASA ? if not what firewalls do
> support it ?


ASA 5550's have a failover capability, but that's as a cluster: I have all my ASA 5550s clustered; but failing one over TWO switches, never tried that. . .


------------------------------

_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


End of firewall-wizards Digest, Vol 14, Issue 12
************************************************

No comments: