Hi David,
David Rieger wrote:
> Being the lazy git that I am - I was wondering if
someone in our
> community can let me know if our campus Symantec
Firewall binaries are
> egress filters too - or is it only an ingress product.
No, both ingress and egress rules can be defined or are
supplied, as
well as program-based rules and Trojan rules. The
definitions for rule
categories from the Admin Guide is appended below.
--Karl
Karl Grose
IST-WSS
=======
Table 11-1 Rule categories
General rules:
Apply to all client traffic. These rules inspect every
inbound and
outbound packet for protocols, ports, and source and
destination IP
addresses.
Program rules:
Apply to specific client program traffic. These rules are
essentially
General rules tailored to specific program executable files.
Trojan rules:
Apply to malicious applications disguised as useful
applications. These
rules typically block traffic on ports associated with
Trojan horses.
Symantec Client Firewall supplies a set of Trojan rules that
apply to
the characteristics of known Trojan horse threats.
=======
------------------------------------------------------------
------------
The following was automatically added to this message by the
list server:
For information about Micronet, including subscribing to
or unsubscribing from its mailing list and finding out
about upcoming meetings, please visit the Micronet Web site:
<http://micronet.be
rkeley.edu/>.
|