Configuring Check Point NGX VPN-1/FireWall-1

The following Frequently Asked Questions, answered by the authors of this book, are designed to both measure your understanding of the concepts presented in _this chapter and to assist you with real-life implementation of these concepts. To have your questions about this chapter answered by the author, browse to www.syngress.com/solutions and click on the Ask the Author form.
| 1. | Q: What s the difference between SmartDefense and Web Intelligence? Don t both of them provide application protection? |
|
| 2. | Q: If I enable all of the defense mechanisms, will I provide my organization maximum protection? |
|
| 3. | Q: I m sending my logs to DShield and I do not want to reveal my internal IP addresses. What can I do to protect them from disclosure? |
|
| 4. | Q: I m trying to discern what is happening on my network by looking at my firewall s logs. How do I know what s normal and what s not? |
|
| 5. | Q: Does Application Intelligence inspect packets for only Application Layer (Layer 7) attacks? |
|
| 6. | Q: What does it mean when something says it does Granular Inspection? |
|
| 7. | Q: I ve deployed a defense-in-depth architecture and have a single SmartCenter Server with multiple NGX enforcement modules. How can I enable application protections for only a certain set of servers? |
|
| 8. | Q: Do most threats really come from insiders? How can my VPN-1 Pro Gateway defend against such attacks? |
|
Answers
| 1. | A: Yes. Whereas SmartDefense encompasses network threats and application threats, Web Intelligence focuses only on Web-based applications and Web... |