My MUA insists that "Paul Miach" wrote:
> > From: Ryan Russell/SYBASE <Ryan .
> > One of my complaints about firewall-1 (on Sun's at least,
> > the only place I've used it..) is that it relies on the routing
> > software built into Solaris, which IMHO, sucks. (So sue me, I'm
> > used to Ciscos.)
> > It is basically only RIP aware, and doesn't allow for things like
> > variable-length subnet masking..
> There is a group within Sun called "Sun Consulting", who can
> provide an OSPF aware gated (solaris 2.5 based). From another bit
> of e-mail (thanks Mr Brewer)
Paul's response to Ryan is correct, it is possible to route with a Solaris machine and Firewall-1. Using gated is a good solution that I have seen work very well. It is fairly straightforward to build from source and install yourself. You don't necessarily need Sun Consulting to do it for you unless you want a supported product. It all depends on what you need and what your policy is regarding the security products you build vs. purchase.
Paul M. Cardon - System Officer
Capital Markets Systems - First Chicago NBD Corporation
com - (312) 732-7392
I never give them hell. I just tell the truth and they think it's hell. - H. Truman
MD5 (/dev/null) = d41d8cd98f00b204e9800998ecf8427e