Re: [fw-wiz] Enforcing content filtering with PIX515E
- From: "Ian Rarity" <Ian.Rarity@xxxxxxxx>
- Date: Mon, 28 Jan 2008 16:49:55 +0000
Hey Ian--"Christopher J. Wargaski" <wargo1@xxxxxxxxx> 23/01/2008 04:28 >>>
The source TCP port will be (nearly) random, but your workstations
will be configured to proxy to Surf Control at TCP port 8081. You
first want to permit that traffic, then explicitly deny HTTP access
elsewhere. Finally, allow the rest of your stuff.
That was exactly what I needed, once I'd put in an extra "deny" for SSL traffic. Many thanks!
Ta,
IR.
*********************************
Ian Rarity
Technical Engineer
ESPC (UK) Ltd.
T: (44)131 624 8000
F: (44)131 624 8509
http://www.espc.com ( http://www.espc.com/ )
*******************************************************************
Private and Confidential: This e-mail transmission is strictly
confidential and intended solely for the addressee. It may contain
privileged and confidential information and if you are not the
intended recipient, you must not copy, disclose, distribute or
take any action in reliance on it. If you have received this
e-mail in error, please delete it and notify our E-mail Systems
Administrator on +44 (0) 131 624 8000. ESPC (UK) Ltd does not
accept any liability for any harm that may be caused to the
recipient's system or data by this message or any attachment.
ESPC (UK) Ltd is a company registered under the Companies
Acts in Scotland (Registered Number SC203535), and having its
registered office at 90A George Street, Edinburgh, Midlothian
EH2 3DF.
ESPC (UK) Limited is authorised and regulated by the Financial
Services Authority.
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
- References:
- [fw-wiz] Enforcing content filtering with PIX515E
- From: Ian Rarity
- Re: [fw-wiz] Enforcing content filtering with PIX515E
- From: Christopher J. Wargaski
- [fw-wiz] Enforcing content filtering with PIX515E
- Prev by Date: Re: [fw-wiz] NAT a range of TCP ports to an internal IP address on pix 506E
- Next by Date: Re: [fw-wiz] NAT a range of TCP ports to an internal IP address onpix 506E
- Previous by thread: Re: [fw-wiz] Enforcing content filtering with PIX515E
- Next by thread: Re: [fw-wiz] Enforcing content filtering with PIX515E
- Index(es):