Great Circle Associates Firewalls
(January 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: TIS FWTK and Solstice FW-1 arguing
From: drexx @ sunphil . mozcom . com (Dexter D. Laggui)
Date: Mon, 13 Jan 1997 22:44:57 -0800
To: firewalls @ greatcircle . com, fw-1-mailinglist @ us . checkpoint . com

Hello world,                          Jan. 13, 1996 (10:45pm Manila time)

This is a case where the original Sys Admin who setup the old TIS
Firewall Toolkit needs to be around. You see, with the following setup:

 +-------------+--[interior Cisco 2500]--[Solstice Firewall-1]-->Internet
 |             |
 Windows       TIS
 clients       FWTK
               proxy & DNS server 

The TIS FWTK is configured as a telnet, mail, and ftp proxy server and 
also as the DNS server. It runs on a PC with FreeBSD. And managing it is
like paying up one's dues in hell. (I know, the server design sucks...)

With the Firewall-1 installed, we had a rule saying that FTP is allowed
from anywhere to anywhere. But with the TIS FWTK having its say in the
matter, we can't get FTP services! We can only have FTP services if we
bypass the FTP proxy. 

Please advise me on how to even start making the two boxes work. Please?


Most humble newbie,
Drexx.

"It's a dirty job, but somebody's gotta do it." -- John Wayne
~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~
         ______
        /_____/\	DEXTER D. LAGGUI
       /_____\\ \	Systems Engineer, Systems Integration Division 
      /_____\ \\ /	PHILIPPINE SYSTEMS PRODUCTS INC.
     /_____/ \/ / /	Penthouse, Corporate Business Center
    /_____/ /   \//\	150 Paseo de Roxas Ave., Legaspi Village
    \_____\//\   / /	Makati City, Philippines
     \_____/ / /\ /          
      \_____/ \\ \	Phone: (++632) 813-6453 to 55 loc. 222
       \_____\ \\	Fax:   (++632) 813-3516
        \_____\/	Email: drexx @
 sunphil .
 mozcom .
 com

~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~-~


Follow-Ups:
Indexed By Date Previous: Re: FW-1 hacked? - Reply
From: Timothy L Hermans <s5utyh @ czar . fnma . com>
Next: Re: How can I configure hidden DNS on TIS?
From: char <csample @ v-one . com>
Indexed By Thread Previous: Re: Firewall-1 query
From: Joerg Pichel <pichel @ sdm . de>
Next: Re: TIS FWTK and Solstice FW-1 arguing
From: Darren Reed <avalon @ coombs . anu . edu . au>

Google
 
Search Internet Search www.greatcircle.com