NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] User based rules in FW1 / metaip uat uam



Absolutely you can do this.  Simply create a user group for each user.  2ez.
But good idea?  Not really, but...if ya gotta

I have thusly answered your technical delimna, but I would not do it
personally.  The design is flawed though it can be done technically.

----- Original Message -----
From: "Ed Davidson" <[email protected]>
To: <[email protected]>
Sent: Wednesday, January 17, 2001 9:47 AM
Subject: [FW1] User based rules in FW1 / metaip uat uam


>
> Okay, so I ask about USER BASED rules within the FW1 rulebase.
> I want to control OUTBOUND requestes based on user name.
> A VAR told me that I can do this using META/IP.  Basically
> I want to put a rule such as;
>
> SOURCE      Destination     Service
> Mr. CEO     Any             any            permit
> Mr. Little  Any             http           permit
> Mr. Little  Any             ftp            deny
>
> Since METAIP UAM knows the username of each client on my
> network (UAT) as well as it's IP address, I should be able
> to do this.  At least, this is what the VAR said.
>
> Tech support was no help.
>
> Any ideas?  Documentation on how to do this?
>
> Thanks!
>
>
>
>
> http://www.primeinc.com
> **********************************************************************
> This email and any files transmitted with it are confidential
> and intended solely for the use of the individual or entity to
> whom they are addressed.  If you have received this email
> in error please reply to the sender of the message.
>
> The views expressed in this correspondence may not
> reflect the views of Prime, Inc.
>
> This footnote also confirms that this email message has
> been scanned for the presence of computer viruses.
> ***********************************************************************
>
>
>
> ========================================================================
> ========
>      To unsubscribe from this mailing list, please see the instructions
> at
>                http://www.checkpoint.com/services/mailing.html
> ========================================================================
> ========


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.