Configuring Check Point NGX VPN-1/FireWall-1

Frequently Asked Questions

The following Frequently Asked Questions, answered by the authors of this book, are designed to both measure your understanding of the concepts presented in _this chapter and to assist you with real-life implementation of these concepts. To have your questions about this chapter answered by the author, browse to www.syngress.com/solutions and click on the Ask the Author form.

1.

Q: What s the difference between SmartDefense and Web Intelligence? Don t both of them provide application protection?

2.

Q: If I enable all of the defense mechanisms, will I provide my organization maximum protection?

3.

Q: I m sending my logs to DShield and I do not want to reveal my internal IP addresses. What can I do to protect them from disclosure?

4.

Q: I m trying to discern what is happening on my network by looking at my firewall s logs. How do I know what s normal and what s not?

5.

Q: Does Application Intelligence inspect packets for only Application Layer (Layer 7) attacks?

6.

Q: What does it mean when something says it does Granular Inspection?

7.

Q: I ve deployed a defense-in-depth architecture and have a single SmartCenter Server with multiple NGX enforcement modules. How can I enable application protections for only a certain set of servers?

8.

Q: Do most threats really come from insiders? How can my VPN-1 Pro Gateway defend against such attacks?

Answers

1.

A: Yes. Whereas SmartDefense encompasses network threats and application threats, Web Intelligence focuses only on Web-based applications and Web...

UNLIMITED FREE
ACCESS
TO THE WORLD'S BEST IDEAS

SUBMIT
Already a GlobalSpec user? Log in.

This is embarrasing...

An error occurred while processing the form. Please try again in a few minutes.

Customize Your GlobalSpec Experience

Category: Business Intelligence Software
Finish!
Privacy Policy

This is embarrasing...

An error occurred while processing the form. Please try again in a few minutes.