RE: Checkpoint NG R55 Firewall and Microsoft ISA 2004 Firewall

  • From: Gene Sibbs <gen_sib@xxxxxxxxx>
  • To: "\[ISAserver.org Discussion List\]" <isalist@xxxxxxxxxxxxx>
  • Date: Fri, 28 Oct 2005 04:24:17 -0700 (PDT)

Hi Tom,

 

Many thanks for your prompt response. You served NG, I was convinced to take it 
down.

 

I would love to use ISA to control the outbound internet access, for example 
let?s say a user hit a bad site like ?porn?. I want to use ISA to bounce back 
some sort of banner letting that user know that they are hitting bad site which 
is against the organization policy. 

 

>> back to back config, a parallel config, or even keep the NG where it is and 
>> use the ISA firewall as a network services segment firewall.

 

Any reference links where I can lookup the above configuration suggestion. 
Additional, Our NG is running on Linux OS from my understanding the OS was 
customized just NG. 

 

Kindest regards,

 

Sibbs

 

 

Thomas W Shinder <tshinder@xxxxxxxxxxx> wrote:http://www.ISAserver.org
Hi Sibbs,
 
No! Don't burn down the NG. Its a good firewall and there will definitely be 
some use for it. You could use a back to back config, a parallel config, or 
even keep the NG where it is and use the ISA firewall as a network services 
segment firewall. The latter config is especially attractive if you're not 
planning on using the ISA firewall to control outbound access to the Internet.
 
HTH,
Tom
 

Thomas W Shinder, M.D.
Site: www.isaserver.org
Blog: http://spaces.msn.com/members/drisa/
Book: http://tinyurl.com/3xqb7
MVP -- ISA Firewalls
**Who is John Galt?**
 


---------------------------------
From: Gene Sibbs [mailto:gen_sib@xxxxxxxxx] 
Sent: Friday, October 28, 2005 5:49 AM
To: [ISAserver.org Discussion List]
Subject: [isalist] Checkpoint NG R55 Firewall and Microsoft ISA 2004 Firewall



http://www.ISAserver.org 
Hi All,

 

I have been away from ISA Server platform for quite sometime, and I lastly 
worked on ISA 2000 version and this was in 2003. I am currently busy preparing 
ISA Server 2004 EE.  Intended goal is to expose our emails to the outside world 
and enable the member of our Organization to hit their emails from anywhere in 
the universe.

 

Currently, our computing infrastructure is firewalled by means of Checkpoint NG 
R55 and is full licensed. As I am busy building up beta ISA Server 2004 I am 
not 100% sure whether to burn down the Checkpoint NG R55 firewall complete and 
run the show on full-blown ISA 2004 only?

 

I am writing to the group to hear what would be the best approach, if anybody 
might have experience on running both firewalling solutions? 

 

Thank you and I look forward to hear from the Group.

 

Sibbs

 



---------------------------------
Yahoo! FareChase - Search multiple travel sites in one click. 
------------------------------------------------------ List Archives: 
http://www.webelists.com/cgi/lyris.pl?enter=isalist ISA Server Newsletter: 
http://www.isaserver.org/pages/newsletter.asp ISA Server FAQ: 
http://www.isaserver.org/pages/larticle.asp?type=FAQ 
------------------------------------------------------ Visit TechGenix.com for 
more information about our other sites: http://www.techgenix.com 
------------------------------------------------------ You are currently 
subscribed to this ISAserver.org Discussion List as: 
tshinder@xxxxxxxxxxxxxxxxxx To unsubscribe visit 
http://www.webelists.com/cgi/lyris.pl?enter=isalist Report abuse to 
listadmin@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Visit TechGenix.com for more information about our other sites:
http://www.techgenix.com
------------------------------------------------------
You are currently subscribed to this ISAserver.org Discussion List as: 
gen_sib@xxxxxxxxx
To unsubscribe visit http://www.webelists.com/cgi/lyris.pl?enter=isalist
Report abuse to listadmin@xxxxxxxxxxxxx 

__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 

Other related posts: