Documentation Home
> SunScreen 3.2 Installation Guide
SunScreen 3.2 Installation Guide
Book Information
Preface
Chapter 1 Installation Overview
What Is SunScreen?
SunScreen Operation Modes
Routing Mode
Stealth Mode
Security Issues
Before You Install SunScreen
Software and Hardware Requirements
Operating System Package Requirements
Solaris Software Packages for the Screen
Solaris Software Packages for the Administration Station
Additional Requirements and Restrictions
Encryption Requirements
Web Server Requirements
Web Browser Requirements
Trusted Solaris
High Availability
Upgrading Your System to SunScreen 3.2
Converting From FireWall-1 to SunScreen
Links to Other SunScreen Features
Chapter 2 Installing in Routing Mode With Local Administration
Installing the Screen with Local Administration
Managing Your Firewall
Chapter 3 Installing in Routing Mode With Remote Administration Using SKIP
Supported Administration Station Configurations
Routing Mode Installation Summary
Installing the Administration Software on the Administration Station
Creating the Certificate on the Administration Station
Installing the SunScreen Software on the Screen
Creating the SKIP Certificate on the Screen
Completing the SKIP Certificates Installation Procedure
Managing Your Firewall
Chapter 4 Installing in Stealth Mode With Remote Administration Using SKIP
Supported Administration Station Configurations
Stealth Mode Installation Summary
Installing the Administration Software on the Administration Station
Creating the Certificate on the Administration Station
Installing the SunScreen Software on the Screen
Creating the Certificate on the Screen
Completing the SKIP Certificates Installation Procedure
Managing Your Firewall
Chapter 5 Installing With Remote Administration Using IKE
Supported Administration Station Configurations
Routing and Stealth Mode Installation Summary
Installing the Screen and Administration Station
Setting Up a Remote Administration Station Using IKE
Create an IKE Certificate on the Administration Station
Setting Up the Screen
Finish the Administration Station
Managing Your Firewall
Chapter 6 Installing SunScreen on Trusted Solaris 8
Overview
Installing the SunScreen Software
Chapter 7 Upgrading Your System
Before You Upgrade
Upgrading to SunScreen 3.2
Upgrading a Screen
Upgrading a High Availability System
Upgrading From SunScreen SPF-200
Upgrading Cryptography Modules
Chapter 8 Converting FireWall-1 to SunScreen in Routing Mode
Preparing Your FireWall-1 Configuration
Known FireWall-1 Reserved Characters
Known FireWall-1 Reserved Words
What Configurations Convert From FireWall-1
SunScreen Conversion Utility
Generating Conversion Files
Troubleshooting the fwconvert Utility
Verifying the Converted Rules
Command and Executable Files
Log Files
policyname_Obj.log
policyname_Rule.log
policyname_Unused.log
Creating the SunScreen Configuration
Chapter 9 Removing SunScreen Software
Removing the SunScreen Software
Appendix A Command Line Installation
Routing and Stealth Mode Installation Summary
Required SunScreen Software Packages
Configuring a Default Screen Installation Through the Command Line
Installing the Administration Packages
Creating Encryption Certificates
Using IKE With SunScreen
Appendix B Defining Security Policies
Determining Your Security Policy
Mapping Your Network Configuration
Deciding on Your Initial Security Level
Security Levels
Naming Services
Interfaces
Worksheets for Defining Your Security Policy
Addresses
Host Addresses
Address Ranges
Address Group
NAT
NAT Map
Screen Interfaces
Authorized Users
Administration Stations
Rules
Four Action Types
Index
A
C
D
E
F
G
H
I
J
K
L
M
N
O
P
R
S
T
U
V
W
© 2010, Oracle Corporation and/or its affiliates