Eicon Networks S92 Uživatelský manuál Strana 46

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 209
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 45
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 46
ACleanFW1Installation
AcleanFW1installationgivesagoodstart.Forourproject,everyFW1systemuses
two100MBitNICs.Belowisapointformsummaryoftheinstallationprocess:
1. FromtheinstallationCD,installonlyFirewall1andtheUserInterface.
2. ChoosetheVPN1andFirewall1SINGLEGATEWAYinstallation.
3. InstallthefollowingGUIs:SecurityPolicy,LogViewer,SystemStatus
4. ConfigureasingleadministratoraccountwithRead/Writeprivileges.
5. DonotconfiguretoallowremoteGUItoconnect.TheGUImustberunfromthe
samelocalmachine.
6. AllowFW1tocontrolIPForwarding.Thiswillensurethatnotrafficcanpass
throughthesystembeforeFW1isupandrunning.Thisisespeciallyusefulina
situationwheretheserverisstartedbuttheFirewallserviceshavenotfinished
loading.
7. EnsurethattheFW1serviceistobestartedautomaticallyeverytimethesystem
startsbycheckingControlPanel –Services.
SecuringtheFW1Installation
Nothingisperfect.FW1version4.0mand4.1bothsufferfrombugsand
vulnerabilities.Belowisalistofversion4.0vulnerabilitiesextractedfrom
SecurityFocus
11
:
n 20020308: CheckPointFW1SecuClient/SecuRemoteClientDesign
Vulnerability
n 20020219: MultipleVendorHTTPCONNECTTCPTunnelVulnerability
n 20010912: CheckPointFirewall1GUILogViewerVulnerability
n 20010908: CheckPointFirewall1PolicynameTemporaryFileCreation
Vulnerability
n 20010908: CheckPointFirewall1GUIClientLogViewerSymbolicLink
Vulnerability
n 20010718: CheckPointFirewall1SecureRemoteNetworkInformationLeak
Vulnerability
11
http://online.securityfocus.com/cgibin/vulns.pl
Zobrazit stránku 45
1 2 ... 41 42 43 44 45 46 47 48 49 50 51 ... 208 209

Komentáře k této Příručce

Žádné komentáře