SunScreen 3.2 Administrator's Overview
    
S
 
 SA (security association), IPsec/IKE ( Index Term Link )
 
 sample network map ( Index Term Link )
 
 Screen
  active HA Screen ( Index Term Link )
  components ( Index Term Link ) ( Index Term Link )
  configuration objects ( Index Term Link )
  HA limitations ( Index Term Link )
  managing multiple Screens ( Index Term Link )
  multiple management ( Index Term Link )
  passive ( Index Term Link )
  primary ( Index Term Link )
  reinstate ( Index Term Link )
  remote administration ( Index Term Link )
  remote headless ( Index Term Link )
  secondary ( Index Term Link )
 
 Screen description of ( Index Term Link )
 
 screen object
  centralized management ( Index Term Link )
  primary Screen ( Index Term Link )
  secondary Screen ( Index Term Link )
 
 screening guidelines
  ICMP packets ( Index Term Link )
  IP packets ( Index Term Link )
 
 secondary Screen ( Index Term Link )
  administration capabilities ( Index Term Link )
  HA ( Index Term Link )
  screen objects ( Index Term Link )
 
 secondary Screens, centralized management group ( Index Term Link )
 
 SecurID
  access paths ( Index Term Link )
  ACE ( Index Term Link )
  ACE/Agent installation ( Index Term Link )
  example
   token PIN establishment ( Index Term Link )
  example configuration ( Index Term Link )
  example create registry address ( Index Term Link )
  example stub client configuration ( Index Term Link )
  stub client ( Index Term Link )
  stub client location ( Index Term Link )
  token PIN ( Index Term Link )
  typical authentication ( Index Term Link )
  UDP and TCP protocols ( Index Term Link )
  use caution in deployment ( Index Term Link )
 
 security association (SA), IPsec/IKE ( Index Term Link )
 
 security considerations ( Index Term Link )
 
 security network, sample network map ( Index Term Link )
 
 security parameters index (SPI ) ( Index Term Link )
 
 security policy
  Initial ( Index Term Link )
  network topology ( Index Term Link ) ( Index Term Link )
  ordered policy rules ( Index Term Link )
  policy objects ( Index Term Link )
  security decisions ( Index Term Link )
 
 service
  * ( Index Term Link )
  ah ( Index Term Link )
  archie ( Index Term Link )
  CoolTalk ( Index Term Link )
  dns ( Index Term Link )
  entries for ports ( Index Term Link )
  esp ( Index Term Link )
  ftp ( Index Term Link )
  icmp ( Index Term Link )
  ip all ( Index Term Link )
  ip mobile ( Index Term Link )
  ipsec ( Index Term Link )
  ipv6 tunnel ( Index Term Link )
  isakmp ( Index Term Link )
  network service groups ( Index Term Link )
  nfs readonly ( Index Term Link )
  ntp ( Index Term Link ) ( Index Term Link )
  predefined ( Index Term Link )
  realaudio ( Index Term Link )
  rip ( Index Term Link )
  rpc ( Index Term Link )
  single
   broadcast filter ( Index Term Link )
   reverse filter ( Index Term Link )
  smtp ( Index Term Link )
  sqlnet ( Index Term Link )
  TCP ( Index Term Link )
  tcp all ( Index Term Link )
 
 service, traceroute ( Index Term Link )
 
 service
  tsolpeerinfo ( Index Term Link )
  udp ( Index Term Link )
  VDOLive ( Index Term Link )
  www ( Index Term Link )
 
 service object
  definition ( Index Term Link )
  group ( Index Term Link )
   creating new service ( Index Term Link )
   definition ( Index Term Link )
   modifying ( Index Term Link )
   predefined ( Index Term Link )
  single ( Index Term Link )
   creating new ( Index Term Link )
   forward filter ( Index Term Link )
   keyword ( Index Term Link )
   modifying ( Index Term Link )
   port filter ( Index Term Link )
   state engine ( Index Term Link )
 
 services
  discriminator ( Index Term Link )
  realaudio state engine ( Index Term Link )
  standard ( Index Term Link )
  state engine ( Index Term Link )
 
 session logging ( Index Term Link )
 
 shared-key cryptography ( Index Term Link ) ( Index Term Link )
 
 shell commands ( Index Term Link )
 
 signature, IKE ( Index Term Link )
 
 single Screen, interface objects ( Index Term Link )
 
 SKIP ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
  certlocal ( Index Term Link ) ( Index Term Link )
  compatibility ( Index Term Link )
  encryption ( Index Term Link )
  RC2 limitation ( Index Term Link )
  SunScreen Lite ( Index Term Link )
 
 SKIP and IPsec/IKE ( Index Term Link )
 
 SKIP certificate, NSID ( Index Term Link )
 
 skiptool GUI
  encryption of administration commands ( Index Term Link )
  graphical user interface ( Index Term Link )
 
 small work groups, SunScreen Lite ( Index Term Link )
 
 SMTP proxy
  create rules ( Index Term Link )
  email configuration ( Index Term Link )
  email configuration issues ( Index Term Link )
  example
   add restrictions ( Index Term Link )
   define address group ( Index Term Link ) ( Index Term Link )
   define relay restrictors ( Index Term Link )
   define spam restrictors ( Index Term Link )
   display restrictors ( Index Term Link )
   displaying spam restrictors ( Index Term Link )
   email rule ( Index Term Link )
   remove restriction ( Index Term Link ) ( Index Term Link )
  functions ( Index Term Link )
  MTA filtering ( Index Term Link )
  operation ( Index Term Link )
  rules ( Index Term Link )
  spam
   control ( Index Term Link )
  VirusWall scanning ( Index Term Link )
 
 smtp service ( Index Term Link )
 
 SNMP
  alerts ( Index Term Link )
  IP addresses ( Index Term Link )
  receivers ( Index Term Link )
  time status indicator ( Index Term Link )
  timer interval ( Index Term Link )
 
 SNMP traps ( Index Term Link )
  supported ( Index Term Link )
 
 snoop ( Index Term Link )
 
 snoop, logdump derived from ( Index Term Link )
 
 snoop program ( Index Term Link )
 
 snoop program ( Index Term Link ) ( Index Term Link )
 
 Solaris, Trusted Solaris 8 for the SPARC platform ( Index Term Link )
 
 Solaris, compatible versions for the SPARC and Intel platforms ( Index Term Link )
 
 Solaris IPsec
  See IPsec
 
 spam
  control ( Index Term Link )
  restictors
   defining ( Index Term Link )
   syntactic forms ( Index Term Link )
  restrictors
   displaying ( Index Term Link )
   working with ( Index Term Link )
 
 SPI (security parameters index) ( Index Term Link )
 
 spoof protection ( Index Term Link )
 
 SQL *Net protocol ( Index Term Link )
 
 sqlnet state engine ( Index Term Link )
 
 ssadm
  certdb subcommand ( Index Term Link )
  certlocal subcommand ( Index Term Link )
  certrldb subcommand ( Index Term Link )
 
 ssadm logdump, man page ( Index Term Link )
 
 standard, IETF ( Index Term Link )
 
 star service ( Index Term Link )
 
 state engine
  characteristics ( Index Term Link )
  connection management ( Index Term Link )
  definition ( Index Term Link )
  discriminator ( Index Term Link )
  discriminator value ( Index Term Link )
  discriminators ( Index Term Link )
  dns ( Index Term Link )
  ether ( Index Term Link )
  ftp ( Index Term Link ) ( Index Term Link )
  icmp ( Index Term Link )
  ip ( Index Term Link )
  ipfwd ( Index Term Link )
  ipmobile ( Index Term Link )
  iptunnel ( Index Term Link )
  new service ( Index Term Link )
  nis ( Index Term Link )
  ntp ( Index Term Link ) ( Index Term Link )
  parameters ( Index Term Link )
  ping ( Index Term Link )
  pmap_nis ( Index Term Link )
  pmap_tcp ( Index Term Link )
  pmap_udp ( Index Term Link )
  precedence level ( Index Term Link )
  realaudio ( Index Term Link )
  rpc_tcp ( Index Term Link )
  rpc_udp ( Index Term Link )
  rsh ( Index Term Link )
  services ( Index Term Link )
  tcp ( Index Term Link ) ( Index Term Link )
  tcpall ( Index Term Link )
  udp ( Index Term Link )
  udp_datagram ( Index Term Link )
  udp_stateless ( Index Term Link )
  udpall ( Index Term Link )
 
 state engines ( Index Term Link )
 
 state information, HA limitations ( Index Term Link )
 
 stateful packet filtering ( Index Term Link )
  details ( Index Term Link )
 
 statistics, log file ( Index Term Link )
 
 stealth ( Index Term Link )
 
 stealth interface ( Index Term Link )
  HA cluster ( Index Term Link )
  high availability ( Index Term Link )
  non-switching hub ( Index Term Link )
 
 STEALTH interface, SunScreen Lite ( Index Term Link )
 
 stealth mode ( Index Term Link )
  acts as a bridge ( Index Term Link )
  description ( Index Term Link )
  hardening OS ( Index Term Link )
  interface ( Index Term Link )
  SunScreen Lite ( Index Term Link )
 
 summary
  packet logging
   summary ( Index Term Link )
 
 SunScreen
  command compatibility ( Index Term Link )
  compatibility ( Index Term Link )
  configuration editor ( Index Term Link )
  error messages ( Index Term Link )
  example
   continue adding SecurID rules ( Index Term Link )
  how it works ( Index Term Link )
  migration from SunScreen EFS, Release 2.0 ( Index Term Link )
  migration from SunScreen SPF-200 ( Index Term Link )
  upgrading ( Index Term Link )
 
 SunScreen 3.2
  prerequisites ( Index Term Link )
  resources ( Index Term Link )
 
 SunScreen and SunScreen Lite
  common features SunScreen Lite and SunScreen
   common features ( Index Term Link )
 
 SunScreen compared with SunScreen Lite ( Index Term Link )
 
 SunScreen EFS 1.1 ( Index Term Link )
 
 SunScreen Lite ( Index Term Link ) ( Index Term Link ) ( Index Term Link ) ( Index Term Link )
  ADMIN interface ( Index Term Link )
  centralized management group ( Index Term Link )
  encryption ( Index Term Link )
  HA ( Index Term Link )
  HA interface ( Index Term Link )
  individual servers ( Index Term Link )
  interfaces ( Index Term Link )
  limitations ( Index Term Link )
  NAT ( Index Term Link )
  number of interfaces ( Index Term Link )
  primary Screen in a centralized management ( Index Term Link )
  remote administration ( Index Term Link )
  SKIIP ( Index Term Link )
  small work groups ( Index Term Link )
  STEALTH interface ( Index Term Link )
  stealth mode ( Index Term Link )
  time-of-day rules ( Index Term Link ) ( Index Term Link )
 
 SunScreen Lite compared with SunScreen ( Index Term Link )
 
 SunScreen SKIP
  commands ( Index Term Link )
  end-system SKIP ( Index Term Link )
  header ( Index Term Link )
  key manager ( Index Term Link )
  limitations note ( Index Term Link )
  log ( Index Term Link )
 
 SunScreen SKIP. See SKIP ( Index Term Link )