Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How do I setup Anti - Spoofing ?

Status
Not open for further replies.

FW1

Programmer
Jun 21, 2000
8
ZA
Hi All<br><br>The Firewall 1 (version 4.1) is installed on a NT Server.<br>On the firewall object there is 4 interfaces namely :<br><br><br>External (Internet link through Cisco router)<br>DMZ&nbsp;&nbsp;(Link to DNS server)<br>locallink (Link to local network)<br>thourthlink (Link to local network)<br><br>If I want to protect the last three from anti-spoofing<br>from the Internet what Valid IP Adress Option should I <br>choose ? (Any,Others,Others+, This Net,Specific)<br><br>I enabled spoof - tracking and chose Others for the External<br>interface. <br>The other links are not enabled, but is set to This Net<br>because Firewall one gives error when they are left at <br>Any(Defualt).<br><br>Is the lower three interfaces secure from spoofing as it is currently set ?<br><br>I have been to <A HREF=" TARGET="_new"> already<br><br>thanks for your attention<br>FW1<br>&nbsp;<br><br><br>&nbsp;&nbsp;<br>
 
The DMZ NIC is normally set to Others+.<br>You should create another workstation object for your DMZ Server and use the valid address (Internet Address) for this object in the Genreal Tab.&nbsp;&nbsp;Now, you should have two objects for the DMZ Server.&nbsp;&nbsp;So, then the DMZ interface should be set Others+ choosing this object.&nbsp;&nbsp;<br><br>Both internal interface should be set to this net.<br><br>JSG
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top