Great Circle Associates Firewalls
(November 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Solaris routing (was Re: FW-1 documentation mistake.)
From: "Paul M. Cardon" <pmarc @ cmg . FCNBD . COM>
Date: Thu, 14 Nov 96 11:12:17 -0600
To: "Paul Miach" <P . Miach @ abm . com . au>
Cc: "firewalls" <firewalls @ GreatCircle . COM>
In-reply-to: <199611140714 . SAA05784 @ tism . abm . com . AU>
References: <199611140714 . SAA05784 @ tism . abm . com . AU>
Reply-to: pmarc @ cmg . FCNBD . COM

My MUA insists that "Paul Miach" wrote:
> > From: Ryan Russell/SYBASE <Ryan .
 Russell @
 sybase .
 com>
> > 
> > One of my complaints about firewall-1 (on Sun's at least, 
> > the only place I've used it..) is that it relies on the routing
> > software built into Solaris, which IMHO, sucks. (So sue me, I'm
> > used to Ciscos.)
> > 
> > It is basically only RIP aware, and doesn't allow for things like
> > variable-length subnet masking..
> 
> There is a group within Sun called "Sun Consulting", who can
> provide an OSPF aware gated (solaris 2.5 based). From another bit
> of e-mail (thanks Mr Brewer)

Paul's response to Ryan is correct, it is possible to route with a Solaris machine and Firewall-1.  Using gated is a good solution that I have seen work very well.  It is fairly straightforward to build from source and install yourself.  You don't necessarily need Sun Consulting to do it for you unless you want a supported product.  It all depends on what you need and what your policy is regarding the security products you build vs. purchase.

---
Paul M. Cardon - System Officer
Capital Markets Systems - First Chicago NBD Corporation
pmarc @
 cmg .
 fcnbd .
 com - (312) 732-7392

I never give them hell.  I just tell the truth and they think it's hell.    - H. Truman

MD5 (/dev/null) = d41d8cd98f00b204e9800998ecf8427e


References:
Indexed By Date Previous: guantlet firewall config help require
From: Albert Lim Keng Leng <alkl . pt @ cemtecasia . com . sg>
Next: Outsourcing vs. Internal
From: Andrew Dinsdale <adinsdal @ phoenixgroup . com>
Indexed By Thread Previous: Solaris routing (was Re: FW-1 documentation mistake.)
From: "Paul Miach" <P . Miach @ abm . com . au>
Next: RE: Ping Problem & Firewall-1
From: "Vos, Arjan" <Vos . Arjan @ kpmg . nl>

Google
 
Search Internet Search www.greatcircle.com