Sample Configurations

The following subsections present three situations that build on each other as the network and the needs of the enterprise change. Each type of authentication is demonstrated.

A User Authentication Example

The Situation

Consider the situation pictured in Figure 8.54. Assuming that all IPs used are routable (i.e., no NAT is necessary), let's implement the security policy listed below.

Figure 8.54. Network for sample configurations

The Goals
  • The Web server in the DMZ will be accessible via HTTP from anywhere.

  • The e-mail server in the DMZ will be accessible via SMTP from anywhere and via POP-3 from the internal networks.

  • Users ...

Get Essential Check Point™ FireWall-1® NG: An Installation, Configuration, and Troubleshooting Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.