RE: Firewall recommendations?

From: Tim Donahue (TDonahue@haynesconstruction.com)
Date: 03/11/03

  • Next message: Jennifer Fountain: "NTP recommedations"
    From: Tim Donahue <TDonahue@haynesconstruction.com>
    To: "'Thorsten Dampf -- 7stein.net'" <thorsten.dampf@7stein.net>, rdusek@myway.com, security-basics@securityfocus.com
    Date: Tue, 11 Mar 2003 17:25:06 -0500
    
    

    I have a Watchguard Firebox, and it makes a great firewall, unfortuantly the
    VPN features never seemed to work correctly for me (yes, I'm sure it was the
    way that I was configuring it, but I . In the end I ended up configuring a
    old workstation (P3 450, 256 MB of ram, and this is overkill) with OpenBSD
    to handle all my VPN applications. Eventually I plan on replacing my
    Watchguard with another OpenBSD box. Check out www.openbsd.com for more
    information.

    Tim Donahue

    > -----Original Message-----
    > From: Thorsten Dampf -- 7stein.net [mailto:thorsten.dampf@7stein.net]
    > Sent: Friday, March 07, 2003 3:48 PM
    > To: rdusek@myway.com; security-basics@securityfocus.com
    > Subject: AW: Firewall recommendations?
    >
    >
    > Take a look at the watchguard products. www.watchguard.com
    >
    > Regards, Thorsten
    >
    >
    > > -----Ursprüngliche Nachricht-----
    > > Von: rdusek@myway.com [mailto:rdusek@myway.com]
    > > Gesendet: Donnerstag, 6. März 2003 21:05
    > > An: security-basics@securityfocus.com
    > > Betreff: Firewall recommendations?
    > >
    > >
    > >
    > >
    > > I am in charge of researching a firewall to replace what we
    > currently
    > >
    > > have. At my previous job I had used Microsoft ISA in a low-security
    > >
    > > environment, and was happy with its features, and its
    > > integration with
    > >
    > > the Windows environment there. However, at my current job,
    > > security is a
    > >
    > > much greater concern, and I have to admit, I am somewhat
    > > uneasy running a
    > >
    > > Microsoft firewall product on top of a Microsoft OS. We also had
    > >
    > > investigated Checkpoint as well as Cisco Pix, and found that for our
    > >
    > > needs, the Pix at least seemed to need _many_ separate
    > > components for the
    > >
    > > same functionality. My question is what are your experiences
    > > with using
    > >
    > > ISA from a security standpoint? Usability issues? From the
    > > Mac end? Or
    > >
    > > would we be better off pursuing the Checkpoint or the Pix
    > > solution? We
    > >
    > > also plan on implementing VPN over whatever we choose, so if you
    > >
    > > recommend something other than these, it should support at
    > > least PPTP and
    > >
    > > perhaps eventually IPSec/L2TP. We have also considered placing ISA
    > >
    > > behind a Linux (or BSD) IP Chains firewall and our perimeter
    > > network to
    > >
    > > block some of the traffic from getting to ISA. Any comments
    > > here? Thanks
    > >
    > > to everybody in advance!
    > >
    >


  • Next message: Jennifer Fountain: "NTP recommedations"

    Relevant Pages

    • RE: Firewall Hardware Recommendations
      ... I am not trying to one-up, but Watchguard Fireboxes Series (FB 500 to FB ... other security products .. ... Subject: Firewall Hardware Recommendations ... A SonicWall PRO 230 + VPN ...
      (Security-Basics)
    • Re: Hardware firewall
      ... SMTP wich is directed to my SBS IP) so I have no 'holes' in my firewall. ... The reason i am saying this is that from my impression the big differences in firewalls is the number of VPN connection they can hold. ... I can't make any recommendations on which model of Watchguard box to use but reguarding your other questions ... VPN is not required for access to Exchange Server. ...
      (microsoft.public.windows.server.sbs)
    • RE: Firewall Hardware Recommendations
      ... aka the firewall. ... please remember that this is a "Security BASICS" list. ... Has the WatchGuard firewall been EAL4/EAL4+ rated? ... Certified for IPSec and VPN Standards but that's it. ...
      (Security-Basics)
    • Re: Firewall recommendations?
      ... playing with Watchguard is a child's play. ... wrong in configuring Watchguard vpn for Tim. ... Subject: Firewall recommendations? ... VPN features never seemed to work correctly for me (yes, ...
      (Security-Basics)
    • RE: Sandboxing
      ... the 3Com Embedded Firewall would be extremely useful and enabling (in ... your case) when you look at it in a VPN context. ... This security policy will accomplish quite a few things: ... During the Policy Server installation, ...
      (Focus-IDS)