QuestionCan I run a firewall on Trusted Solaris? AnswerRunning a firewall on Trusted Solaris is fine as long as it's Sunscreen Secure Net 3.1 or later. Some may remember that Sunscreen EFS 3.0 was unable to interpret tsol packets. Therefore some of its features would not work if the network traffic passing through the firewall was between tsol machines (and therefore labeled). This means that if you had wanted to use all of the filtering capabilities of Sunscreen, at least one end of each network communication would have to have been a single-label machine. This is fixed in 3.1 (There's been a name change from EFS to Secure Net.) Applies to Trusted Solaris Release:1.2, 2.5, 2.5.1, 7 |
| |||||||||||||||||||||||||||||||||