189
Defining your security environment
Understanding proxies
4
On the Reserved Services tab, to enable the use of reserved services, check
Allow GSP to use telnet
and FTP ports
.
If the TELNET and FTP proxies are disabled, this option allows GSP to use TELNET and FTP ports.
This is normally not allowed to prevent misconfigurations.
5
On the Connection Timeout tab, do the following:
6
Optionally, on the Description tab, type a more detailed description than you typed in the Caption
text box.
7
Click
OK
.
8
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
For further information related to this topic, see the following:
■
“Proxy Properties: GSP—General tab”
■
“Proxy Properties: GSP—Reserved Services tab”
■
“Proxy Properties: GSP—Connection Timeout tab”
■
“Configuring custom protocols to handle data from special applications”
Configuring the Oracle Net9 Connection Manager proxy
The security gateway includes the Oracle Net9 Connection Manager proxy, which is located in the /usr/
raptor/oracle_netprxy/ directory.
When using the Oracle Connection Manager proxy, all SQL*Net traffic is handled according to the
Oracle Net9 Connection Manager’s configuration. The security gateway passes all SQL*Net
communications to the Oracle Net9 Connection Manager proxy without any checking, allowing the
Oracle Net9
Connection Manager proxy to handle communication.
Before using the Oracle Connection Manager proxy, you should read the Oracle Connection Manager
documentation. Being familiar with this information helps you avoid unwanted SQL*Net traffic and
any possible security breech due to misuse of this component.
You can find the Oracle Connection Manager documentation on the Documentation CD-ROM included
with your security gateway, in the Third Party Documents directory. The files in that directory are:
Net9AdminGuide.pdf and Net9proxy.doc.
Note:
You can also configure a GSP to pass SQL*Net traffic.
Enable IP GSP
To enable the GSP proxy for use with IP-based custom protocols, check this option.
Caption
Type a brief description of the GSP proxy.
TCP Timeout (seconds) Type the GSP timeout for TCP connections, or use the controls to raise or lower the
provided value.
UDP Timeout (seconds) Type the GSP timeout for UDP connections, or use the controls to raise or lower the
provided value.
IP Timeout (seconds)
Type the GSP timeout for IP connections, or use the controls to raise or lower the
provided value.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...