Astaro User Bulletin Board

Go Back   Astaro User Bulletin Board > Astaro Gateway Products > Network Security: Firewall, NAT, QoS, IPS and more

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 11-19-2008, 10:45 PM
Junior Member
 
Join Date: Nov 2008
Posts: 6
Default Does Global IPS Setting need to be Internal or External?

When I setup this whitebox with 7.305, it is showing External (Network) in the Local Networks box under the Network Security->Intrusion Protection->Global Tab. Is that correct? Shouldn't it be sniffing traffic on the external interface? Or does it sniff the passed traffic after it passes all other filters? If so, this would seem to be counter intuitive if someone is trying to penetrate your box and it drops all the suspicious packets you may not know in time to prevent a successful attack.

I am a noob at this and I know its probably painfully obvious. I was just confused.

Thanks,
isildur
Reply With Quote
  #2 (permalink)  
Old 11-20-2008, 12:19 AM
BAlfson's Avatar
Senior Member
 
Join Date: Mar 2007
Location: Oklahoma City
Posts: 562
Default

No, the Global tab asked for your 'Local networks'. You likely will only have 'Internal (Network)' in there although you might have 'DMZ' if you have one, or other internal networks.

In my experience, havine 'External (Network)' in that box causes the CPU to go over 100% once there's a little load on the box.

Cheers - Bob
__________________
ACE V7 - Astaro Preferred Partner since V3
Addicted to my iPhone!
Reply With Quote
  #3 (permalink)  
Old 11-20-2008, 12:26 AM
Junior Member
 
Join Date: Nov 2008
Posts: 6
Default Thanks!

Thanks for the tip!

BTW, is there a page somewhere with example configuration for whiteboxes? I have googled and browsed the Astaro site and I think I am missing something.


Thanks,
isildur
Reply With Quote
  #4 (permalink)  
Old 12-21-2008, 12:55 AM
Junior Member
 
Join Date: Nov 2008
Location: Calgary, Alberta Canada
Posts: 24
Default

A sample or walkthrough guide would be nice....
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT. The time now is 02:07 PM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.


These pages are specifically maintained for the discussion of firewall issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases. issues within the Open Source community, and might already reflect new alpha/beta releases under development. Please refer to our product specifications for the functionality of the actual release. Discussions of new/enhanced functionality does not constitute a commitment of Astaro, to integrate this functionality into future releases.