{"id":109,"date":"2018-06-22T19:56:04","date_gmt":"2018-06-22T19:56:04","guid":{"rendered":"http:\/\/www1.scnresearch.com\/?page_id=109"},"modified":"2018-07-18T01:56:21","modified_gmt":"2018-07-18T01:56:21","slug":"solaris-firewall","status":"publish","type":"page","link":"https:\/\/www.scnresearch.com\/index.php\/scn-research-inc\/scn-research-products\/solaris-firewall\/","title":{"rendered":"Solaris Firewall"},"content":{"rendered":"<h1>Firewall Features<\/h1>\n<p>Up-to-date Sparc or X86 Solaris 2.9, with all current Sun Microsystems-approved patches applied. All unnecessary kernel and OS services disabled.<\/p>\n<p>Complete filtering based on host IP number, network, domain name, and service.<\/p>\n<p>Daily reports discuss security events, along with disk space, CPU usage, illegal access attempts, password file status, etc.\u00c2\u00a0 Completely customizable.<\/p>\n<p>One-time (skey) passwords.\u00c2\u00a0 Root restriction logins.\u00c2\u00a0 Password checking and\u00c2\u00a0restrictions on bad passwords (not allowed).<\/p>\n<p>No routing between inside and outside networks.<\/p>\n<p>Network performance improved over stock OS via special utilities.<\/p>\n<p>Various Internet services can be turned on and off easily via control files.<\/p>\n<p>Complete logging of all machine accesses and events stored on either firewall\u00c2\u00a0machine or internal machine.<\/p>\n<p>Complete control over which ports logins are allowed on, and reports are generated\u00c2\u00a0based on login both successful and not successful.<\/p>\n<p>Improved route management software, same as used by Internet backbone sites\u00c2\u00a0(GATED), if needed.<\/p>\n<p>Control of modem access if required.<\/p>\n<p>Control of individuals or groups that receive security reports generated by system.<\/p>\n<p>Complete DNS services for firewall system, completely hiding internal machine\u00c2\u00a0names and access.<\/p>\n<p>Installation of TripWire, SOCKS, Firewall Toolkit, and other network security\u00c2\u00a0applications.<\/p>\n<p>Encrypted session support including fully encrypted telnet, FTP, and filecopy.<\/p>\n<p>All known Solaris security issues have been fixed.<\/p>\n<p>All setuid programs not needed are removed.<\/p>\n<p>Sendmail is not used, and fully capable replacement of sendmail handles all (MTA)\u00c2\u00a0Mail Transfer Agent responsibilities.<\/p>\n<p>Email server capable of handling mailing lists, multiple SMTP gateways for\u00c2\u00a0MS Exchange and Lotus Notes, along with other Unix machines.<\/p>\n<p>Process-watchers constantly check firewall for problems.<\/p>\n<p>Stack-overflow defenses are standard.<\/p>\n<p>All packets are examined and re-written, no pass-through ala\u00c2\u00a0packet-filter\/stateful inspection systems.<\/p>\n<p>Optional Unix services including NTP, SNMP, etc.<\/p>\n<p>Automated paging\/email service for security alerts, sniffer detection, other security\u00c2\u00a0or system anomalies.<\/p>\n<p>Web-based status monitor of functions and logs from internal machine.<\/p>\n<h1>Web<\/h1>\n<p>If a web server is required, servers based on custom Apache 1.3.33 will be used,\u00c2\u00a0with full support for access control, virtual domains, server extensions, etc.<\/p>\n<p>Custom Squid Proxy for web caching.\u00c2\u00a0 Includes support of SSL.<\/p>\n<p>SOCKS5 handles client proxy for socks-compliant clients behind the firewall.<\/p>\n<p>Anonymous FTP server which allows anonymous people access to a restricted area\u00c2\u00a0of the system.<\/p>\n<p>Full support for virtual FTP directories (based on WUFTPD with additional SCN\u00c2\u00a0Research enhancements).<\/p>\n<p>If required, USENET News server (INN 2.4.1).\u00c2\u00a0 Read news via the firewall or off an\u00c2\u00a0internal machine. Select which newsgroups to receive and filter them at the firewall<\/p>\n<p>or at the service provider. Comes with a completely up-to-date list of all available\u00c2\u00a0newsgroups. Latest version of software includes usage reports and automated\u00c2\u00a0administration.<\/p>\n<h1>Client<\/h1>\n<p>Unix clients for WWW, Gopher, Telnet, FTP, Finger, Whois, WAIS, Archie, IRC,\u00c2\u00a0Finger, USENET News, Ping, RealAudio, TRACEROUTE, etc.<\/p>\n<p>Proxy services (use the internet from behind the firewall) for all of the above clients\u00c2\u00a0under Unix.<\/p>\n<p>Netscape (Web client) available for PC\/Windows and Mac handles WWW, FTP,\u00c2\u00a0Gopher, WAIS, and USENET News.<\/p>\n<p>Shareware software for MS\/Windows that allows proxy access to internet via firewall\u00c2\u00a0for services such as Telnet, Finger, Ping, IRC, Talk, FTP, Gopher, WWW.<\/p>\n<h1><\/h1>\n<h1>SCN Research Price<\/h1>\n<p>Full system price is $3000 which includes all of the above plus training on\u00c2\u00a0administration of the system.<\/p>\n<p>This installation takes one full day (approx 12 hours).<\/p>\n<p>Price does not include travel time for on-site installation.<\/p>\n<p>SCN Research will conduct ongoing administration of the system at the rate of\u00c2\u00a0$150\/hour.<\/p>\n<h2>Examples of additional services from SCN Research:<\/h2>\n<p>Setup of all PC clients.<\/p>\n<p>Setup of non-Sun Unix clients.<\/p>\n<p>Setup of internal DNS server.<\/p>\n<p>Ongoing administration.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Firewall Features Up-to-date Sparc or X86 Solaris 2.9, with all current Sun Microsystems-approved patches applied. All unnecessary kernel and OS services disabled. Complete filtering based on host IP number, network, domain name, and service. Daily reports discuss security events, along with disk space, CPU usage, illegal access attempts, password file status, etc.\u00c2\u00a0 Completely customizable. One-time &hellip; <a href=\"https:\/\/www.scnresearch.com\/index.php\/scn-research-inc\/scn-research-products\/solaris-firewall\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Solaris Firewall&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":390,"parent":103,"menu_order":1,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-109","page","type-page","status-publish","has-post-thumbnail","hentry"],"_links":{"self":[{"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/pages\/109","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/comments?post=109"}],"version-history":[{"count":0,"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/pages\/109\/revisions"}],"up":[{"embeddable":true,"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/pages\/103"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/media\/390"}],"wp:attachment":[{"href":"https:\/\/www.scnresearch.com\/index.php\/wp-json\/wp\/v2\/media?parent=109"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}