Re: [fw-wiz] checkpoint port-redirection question

From: R. DuFresne (dufresne_at_sysinfo.com)
Date: 05/30/03

  • Next message: Florin Andrei: "Re: [fw-wiz] pix and syslog"
    To: Douglas J Hunley <doug@hunley.homeip.net>
    Date: Fri, 30 May 2003 17:07:00 -0400 (EDT)
    

    sounds like a sendmail rather then a fw-1 issue, editing the sendmail.cf
    on the servers in question and designating the smart-relay-host should do
    the trick here.

    Thanks,

    Ron DuFresne

    On Fri, 30 May 2003, Douglas J Hunley wrote:

    > -----BEGIN PGP SIGNED MESSAGE-----
    > Hash: SHA1
    >
    > I'd like to know if the following scenario is doable using checkpoint (and if
    > not, what platforms will do it). thanks.
    >
    > I'd like to configure the firewall to only accept outbound SMTP traffic from
    > ONE specific host (the internal mail gateway). Any outbound SMTP traffic from
    > ANY OTHER internal host should be port-forwarded (routed, whatever the term)
    > to the internal mail gateway. The internal mail gateway can then either
    > forward the request (after checking the message for SPAM/viruses/etc) or drop
    > the email. doable?
    > - --
    > Douglas J Hunley (doug at hunley.homeip.net) - Linux User #174778
    > http://doug.hunley.homeip.net && http://www.linux-sxs.org
    >
    > It's overkill, of course. But you can never have too much overkill.
    > -----BEGIN PGP SIGNATURE-----
    > Version: GnuPG v1.2.2 (GNU/Linux)
    >
    > iD8DBQE+14Xx2MO5UukaubkRAmdDAJ0YRag8DOCZb8tQrjgWEjDmsOqzbQCgqRiU
    > nXdn54fBm6cq7c3uOHCN6PQ=
    > =gbiz
    > -----END PGP SIGNATURE-----
    >
    > _______________________________________________
    > firewall-wizards mailing list
    > firewall-wizards@honor.icsalabs.com
    > http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    >

    -- 
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
            admin & senior security consultant:  sysinfo.com
                            http://sysinfo.com
    "Cutting the space budget really restores my faith in humanity.  It
    eliminates dreams, goals, and ideals and lets us get straight to the
    business of hate, debauchery, and self-annihilation."
                    -- Johnny Hart
    testing, only testing, and damn good at it too!
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    

  • Next message: Florin Andrei: "Re: [fw-wiz] pix and syslog"