Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

cisco vpn & zonealarm expert rules ignored (stateful locked on)

Status
Not open for further replies.

rocket777

Technical User
Jun 21, 2006
4
US
I can't get zonealarm pro expert rules to block access to various computers inside the vpn domain (it's a nasa/jpl domain). And I can't turn off the stateful firewall to see if that's getting in the way.

Any help appreciated.

Details:

I've got an IT dept. (possibly modified version of) cisco 4.6.00.0045 client and I want to set some zonealarm pro (v5.5)expert rules, specifically, to set access control on an x-server that doesn't properly provide access control itself.

So, I setup expert rules within zonealarm, and they work on my local lan, (e.g. computer A to my computer, I can block access to my x-server). But I can't block anything coming in on the vpn.

Nor can I block localhost to localhost. (And I don't know if uninstalling the ciscos would fix this.)

I've been to the zonelabs forums, and they think it's the vpn client that somehow gets in front of ZA's rules.

I see there is a firewall built into cisco, called stateful and it truly is always on. The docs say I can turn it off, but the version I got from my IT dept appears to not permit that feature.


Any ideas?
thanks

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top