Matthew,
Whoa.
PIX v6.2 will have a feature that was referred to in the roadmap as
"TCPDump". The intent is to allow a PIX admin to inspect the data
stream. This is not a port. The choice of name in the roadmap reflects
hopes about our developments capability (we had tcpdump envy).
With that said, this capability will be integrated into the PIX
environment. The PIX admin will have control over the capability. Data
gathered gets stored elsewhere, not on the PIX. Based on an organizations
security policy that could significantly affect how the feature is used.
PIX v6.2 gets released next year. At release, we'll release advice on how
the use of this feature impacts PIX performance.
Liberty for All,
Brian
At 12:01 PM 10/30/2001 -0500, "Matthew Jach" <jach_at_berbee.com> wrote:
>Message: 1
>From: "Matthew Jach" <jach_at_berbee.com>
>To: <firewall-wizards_at_nfr.com>
>Subject: Re: [fw-wiz] tcpdump on my firewall
>Date: Mon, 29 Oct 2001 09:09:19 -0600
>
>I'm sure most people are aware of this but I just thought I'd throw it out
>there in case some did not... and it seemed relevant to the conversation.
>
>If you plan on implementing PIX 6.2 you will notice that tcpdump is now an
>included feature.
>
>Just food for thought...
>
>-m
_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_nfr.com
http://list.nfr.com/mailman/listinfo/firewall-wizards
Received on Oct 31 2001