Jump to content


Photo

Spyware Firewall 410 setup


  • This topic is locked This topic is locked
3 replies to this topic

#1 Kevin Vinyard

Kevin Vinyard
  • Members
  • 20 posts

Posted 06 July 2005 - 08:33 AM

Setup question.PIXFW<--->CheckPointFW(10.39.226.5)<--->Proxy(10.39.226.6)<--->LAN (10.x.x.x) All LAN users go through the proxy to get to the internet. The proxy is Microsoft Proxy. What IP should the Spyware Firewall have on it to ensure that reporting is correct as to which machines on the LAN are infected?

#2 fleming

fleming
  • Barracuda Team Members
  • 21 posts

Posted 08 July 2005 - 05:43 PM

Sicne the ISA is running in forward proxying mode, it won't report the IP addresses of the client. In this case you will lose the ability to find who is infected. Currently, even the Barracuda Spyware Firewall itself is still having the same issue of not spoofing client IP behind it. The spyware team is putting out a patch to enable that. BTW, do you use ISA for content filtering or any other additional feature? Caching maybe? As for which IP address to use, I suggest you to use any Local LAN IP as long as it's reachable for management.

#3 Kevin Vinyard

Kevin Vinyard
  • Members
  • 20 posts

Posted 12 July 2005 - 11:25 AM

Thank you for the reply. Would there be any routing changes for users getting to the proxy? Or should the 410 be placed inline between the PIX and CheckPoint?

#4 Spinner

Spinner
  • Members
  • 1 posts

Posted 28 July 2005 - 11:12 PM

Hi Flemming,A client of our's is about to put in a 210 behind an ISA 2000 box which runs the web browsing firewall and caching. It also runs NetIQ's WebMarshal product for URL and content checking/control.Is there a particular version of the firmware that should we be using for the 210 with this setup?Also, is there a proper instruction manual for the product instead of just the 'quick start' guide of 1 page?