|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Re: FW-1: Questions about DHCP and IPX
Jason L. Snowden (Jason.Snowden
f-15.wpafb.af.mil)
Tue, 22 Sep 1998 07:49:17 -0400
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
- Next message: DIGEX Grrrrrrrrrl: "Re: [FW1] How many rules can exists in fw1 ?"
- Previous message: Ted Doty: "Re: Penetration testing via shrinkware"
- In reply to: Paul D. Robertson: "Re: Penetration testing via shrinkware"
- Next in thread: Marcus J. Ranum: "Re: FW-1: Questions about DHCP and IPX"
- Reply: Marcus J. Ranum: "Re: FW-1: Questions about DHCP and IPX"
- Reply: Aaron D. Turner: "Re: FW-1: Questions about DHCP and IPX"
>also be able to reach a server on the internal LAN via IPX. Will FW-1 allow
DHCP
>through it and can IPX be tunneled through the firewall?
Well, I would suggest (and I'll probably get flamed for this) that your
customer consider BorderManager, as I assume they are running Netware. For
those who don't know, BorderManager is Novell's Firewall/Proxy/WebCache
solution. If can packet-filter IPX/SPX, RIP, SAP, NCP, NetBIOS, TCP/IP,
(even Appletalk), perform NAT, remote access, multiprotocol and WAN routing,
be an IPX to IP gateway, restrict Internet access by NDS user object, perform
proxy caching services, http acceleration, and 128 bit Virtual Private
Networking. It is a powerful piece of software combined with Netware5, which
will have DHCP built in, and BorderManager not only allows IPX through, but it
allows rules to be set on SAP/RIP/NLSP etc. It also goes without saying that
it integrates completely with your current NDS-based Novell environment, and
is managed via Netware Administrator (aka single point of admin).
*.02*
Jason L. Snowden, CNE-4.11
P.S. I don't know if this affects you or not, but FW1 has quite a bit of
Iraqi-written code in it, and the source code for it was recently published in
the Gov't/Mil circles, so exploits will be soon to follow surely. It has been
banned for use by Government installations for these reasons. They seem to
have a problem with a firewall which was written by a nation hostile to the
United States. No clue why. ;)
- Next message: DIGEX Grrrrrrrrrl: "Re: [FW1] How many rules can exists in fw1 ?"
- Previous message: Ted Doty: "Re: Penetration testing via shrinkware"
- In reply to: Paul D. Robertson: "Re: Penetration testing via shrinkware"
- Next in thread: Marcus J. Ranum: "Re: FW-1: Questions about DHCP and IPX"
- Reply: Marcus J. Ranum: "Re: FW-1: Questions about DHCP and IPX"
- Reply: Aaron D. Turner: "Re: FW-1: Questions about DHCP and IPX"
This archive was generated by hypermail 2.0b3 on Sat Jul 17 1999 - 07:11:47 CDT