Great Circle Associates Firewalls
(August 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: PPTP & FW-1
From: snorthc @ nswc . navy . mil (Stephen Northcutt - CD2S)
Date: Tue, 5 Aug 97 07:49:45 EDT
To: Firewalls @ GreatCircle . COM

>I'm attempting to setup a FW-1 filter to support PPTP.
>I'm using FW-1 3.0a on Solaris.
>
>PPTP is not defined, how do I seutp a fitler just for PPTP not all IP?
>
>Thanks In Advance
>Bert Carroll

Hmmm, we did this in class last week, its not as GUI as one
might think! Try:

Define service pptp
TCP 5678 "control"

Define service, other, match IP_P = 47

Define service, other
match IP_P = 47, ([20:2, b]) & 0xEF7F = 0x2001, [22:2, b] = 0x800

Maybe that will get you close :)

Indexed By Date Previous: Losing ARP table (and sleep!) w/Eagle Raptor NT 4.0
From: uskanbye @ ibmmail . com
Next: Firewalls don't work
From: mjmccann @ connect . ie
Indexed By Thread Previous: Re: PPTP & FW-1
From: Dick_Wall @ stratus . com
Next: RE: PPTP & FW-1
From: "Jarmon, Don R" <drjarmon @ ingr . com>

Google
 
Search Internet Search www.greatcircle.com