GFI ESM GFI ESM

EventID.Net Firewalls page



This page intends to be a compilation of our experience in installing and managing firewalls, an easy way to access some of the information that we compiled over time and a portal for other resources as well.

Products:
FireGen for SEF/Raptor - Log Analyzer for SEF/Raptor firewalls
FireGen for PIX - Log Analyzer for Pix firewalls
FireGen for Netscreen - Log Analyzer for Netscreen firewalls
FireGen New Generation - Log Analyzer for SEF 8.0, SGS, Linksys, SonicWALL and Fortigate firewalls - Beta

Let us know for what type of firewall you would like us to develop a log analyzer!

IT Security News

Spammers Stay Busy Despite Pushdo Botnet Hit
1 Sep 2010 at 6:05pm
The disruption of the Pushdo botnet has not stopped spammers, despite nearly two-thirds of the botnet's command and control servers being taken out of commission. - From the shutdown of McColo t...

HP WebScan Feature Can Expose Scanned Documents
1 Sep 2010 at 4:57pm
Security researchers at Zscaler say many organizations are leaving themselves open to corporate espionage via the WebScan feature included in HP's all-in-one printers. - Research from Zscaler ha...

How to Design a Secure DMZ
1 Sep 2010 at 2:56pm
One core tenet of demilitarized zone (DMZ) design is to segregate network devices, systems, services and applications based on risk. Because of this, it's crucial to carefully plan and design a DMZ...

Microsoft Releases New 'Fix-it' for DLL Vulnerability
31 Aug 2010 at 11:08pm
Microsoft released some additional help today to plug security holes opened by the DLL loading vulnerabilities in many applications. - Microsoft released a quot;Fix-it quot; to help administrat...

Researchers Find Quantum Encryption Hack
31 Aug 2010 at 9:29pm
UPDATE: A team of researchers has demonstrated a new way to crack quantum cryptography using bright light. - A team of researchers has uncovered a new way to crack the security of quantum crypto...

Twitter Turns to OAuth for Application Authentication
31 Aug 2010 at 6:22pm
Twitter has migrated to OAuth for authentication, meaning third-party apps will no longer have to store and send user credentials over the Internet when the application is used. - Twitter has co...

Hackers Focus on Misconfigured Networks, Survey Finds
31 Aug 2010 at 4:09pm
Misconfigured networks are the most popular target for hackers, according to a survey taken at the Defcon security conference in July. - Ever wonder what IT resource is the easiest for hackers t...

Phishing Attacks Target CEOs
31 Aug 2010 at 1:54pm
Hackers are routinely using social network sites and basic searches to find biographical information on corporate executives. And once they have that information, they're targeting these executives...

Trend Micro Targets Virtualization, Cloud Security
31 Aug 2010 at 12:49pm
Trend Micro is moving ahead with its virtualization and cloud security strategy with new anti-malware technology for virtual environments and encryption key management for the cloud. - Trend Mic...

Resources and articles:
Challenges in managing firewalls
Best Practices for Security Incident Response
DES Encryption Example
Our firewall log analysis blog
Firewall Books

Consulting companies - Do you need assistance in various IT security projects? Here is a list of companies that can help you:

Name Area covered Description
Cerber Technologies Greater Toronto Area IT Security consulting services for small, medium and large organizations. CISSP certification.
Data Perceptions Kitchener/Waterloo, Ontario Information Technology consulting services in the areas of network and systems infrastructure. We offer experienced consultants to provide design, implementation and support services to assist businesses in developing and deploying effective IT strategies.
Vinci Consulting Corp. US-based companies Redundant Datacenter Design & Implementation
Security Policy Development
VISA Cardholder PCI Compliance
DMZ Design and Implementation
PIX Firewall Reviews
Add your company name on this list!

Online Databases maintained by Altair Technologies:
Symantec SEF/Raptor Messages
Symantec SEF/Raptor Daemons
Cisco Pix Messages
TCP/IP Protocols

Tools developed by Altair Technologies:
sanitize - Replaces IP addresses from configuration and log files with random ones
agfind - A command line find utility using regular expressions

Other Internet resources:

comp.security.firewalls

Newsgroup for general firewall discussions

Internet Firewall FAQ

A firewall FAQ list maintained by Matt Curtin and Marcus J. Ranum (considered to be the developer of the first proxy firewall).

LogAnalysis.org Website dedicated to computer systems log analysis - maintained by Tina Bird and Marcus J. Ranum

comp.dcom.sys.cisco

Newsgroup for Cisco products

ISAserver.org

Microsoft's ISA Server FAQ (unofficial)

AttackPrevention Technical articles and How-To's about Checkpoint and Nokia IPSO, maintained by Mitchell E Rowton

FAQ: Firewall Forensics

Analysis of various attack signatures and protocols appearing in firewall logs

Protocols.com Listing of data communications protocols
Internet Storm Center Latest statistics about protocols used in attacks

Send us your suggestions or comments! These could be firewall or VPN resources that you consider quite useful, critical comments or additional type of information that you would like to see here.