FireWall-1 FAQ: Securing Solaris
Please note: This content was from when I was operating my FireWall-1 FAQ site, which I stopped operating in August 2005. For some reason people still have links to this stuff on the Internet that people are still clicking on.
I am making this information available again AS IS. Given how old this information is, it is likely wildly inaccurate. I have no plans to update this information.
If you're still running versions of Check Point VPN-1/FireWall-1 where this information is still relevant to you, do yourself a favor and upgrade to a more recent release. If you happen to be running a current release and the information is useful, it's by happenstance :)
I recommend reading the article Armoring Solaris, by Lance Spitzner. He also includes a script that will some of the work for you. You may also wish to look at:
- http://www.fish.com/titan/
- http://www.sunworld.com/sunworldonline/common/security-faq.html
- http://yassp.parc.xerox.com/
My book also covers hardening Solaris for a FireWall-1 installation.