i-Planet Administration Guide

i-Planet Firewall Application

In most i-Planet applications, a separate firewall is used to restrict the external access to the i-Planet gateway to traffic on TCP Port 443, or to the port you have configured to carry SSL traffic.

For situations in which an external firewall does not exist, i-Planet provides the option of installing an internal firewall, which offers limited configuration options. If you want greater control over the ports and traffic than this firewall application provides, you must install a firewall product like Sun Microsystems' SunScreen EFS.

If you choose not to install the i-Planet firewall application, make sure that you configure your existing firewall to restrict external access (access from the Internet) to the i-Planet gateway to the SSL port only (port 443 by default), while leaving full access to the i-Planet gateway from all machines and all ports on the internal or private network.


Note -

Port 443 is the usual default port for SSL traffic, and the instructions throughout this chapter assume that you selected port 443 for SSL traffic.