Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other firewalls
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 7th, 2003, 04:35 PM
kamui's Avatar
kamui kamui is offline
Frequent Poster
 
Join Date: Aug 2003
Location: France
Posts: 218
Default Kerio 4 and lns rules ;)

HI All ,

I want to know , how can i convert or import panthom 5 lns master rules , for my kerio 4 personnal firewall , thx
  #2  
Old October 7th, 2003, 05:48 PM
LowWaterMark LowWaterMark is offline
Administrator
 
Join Date: Aug 2002
Location: New England
Posts: 15,525
Default Re:Kerio 4 and lns rules ;)

Quote:
quoting: kamui link=board=23;threadid=14668;start=0#msg92213 date=1065558948]I want to know , how can i convert or import panthom 5 lns master rules , for my kerio 4 personnal firewall , thx

Probably only through a lot of manual effort...

But besides that it may not be practical. Different rules based firewalls have different ways of accomplishing things, and they generally require rules to be developed that are specific to that firewall. If a firewall approaches a function differently, the rules needed may be different to provide the same security.

Here's a thread where BlitzenZeus was trying to configure LnS as he configured his Kerio 2.1.5 and had some difficulties because the two firewalls do things differently. While this is not exactly what you are asking, I think it shows that you must develop rules specifically to the firewall you are using.

LooknStop vs Kerio PF
  #3  
Old October 7th, 2003, 06:34 PM
BlitzenZeus's Avatar
BlitzenZeus BlitzenZeus is offline
Security Expert
 
Join Date: Feb 2002
Location: Oregon, USA
Posts: 451
Default Re:Kerio 4 and lns rules ;)

At this time the logging doesn't work correctly in 4x still, so I don't suggest you use it as can't really prove what your rules are doing, and unless an application is attached to a rule it won't log so that complicates the process of finding conflicting settings. I suggest you don't use 4x at this time, and if your going to run any version, run 2x.

Well, some rules you will have to ditch:
--You cannot filter by packet flags, but Kerio does use a stateful method to block flagged packets.
--No arp filtering

So once you drop those you have a basic firewall configuration without any appliction specific settings, basically a hardware firewall configuration in a sense.

Personally, if you want to use his ruleset I suggest you use LnS, and if you want to use Kerio, use the features of the firewall like the rule based application filtering. These are two different beasts even though they are both rule based.
__________________
Yesterday we obeyed kings, and bent our necks before emperors. But today we kneel only to the truth. -Kahlil Gibran
  #4  
Old October 7th, 2003, 06:53 PM
CrazyM's Avatar
CrazyM CrazyM is offline
Firewall Moderator
 
Join Date: Feb 2002
Location: BC, Canada
Posts: 2,433
Default Re:Kerio 4 and lns rules ;)

Hi kamui

As LWM suggests, it would have to be a manual effort. You could use some of your LnS rules as a guide/template for rules in Kerio, but others would have to be created from scratch. While both are rule based, they have different approaches to how rules are processed, created and function. Application control is also different.

Just make sure you have good understanding of how the new Kerio works (as it differs from v2.x), and you should not have much trouble constructing a rule set. You may also want to look at the v2.x of Kerio as it is still preferred by many.

Regards,

CrazyM
__________________
"The best thing we can do in cyberspace is exactly what we do in the real world: do our best to manage the risks."
- Bruce Schneier
 

Wilders Security Forums > Security Products > other firewalls « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 05:26 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums