User guide

Configuring Firewall Options
User Guide 73
SOCKS implementation for the Firebox X Edge
The Firebox X Edge functions as a SOCKS network proxy server. An
application that uses more than one socket connection and imple-
ments the SOCKS version 5 protocol can communicate through the
Firebox. SOCKS supplies a secure, two-way communication channel
between a computer on the external network and a computer on
the trusted network. To use a SOCKS-compatible application, con-
figure the application with the necessary information about the
Firebox X Edge.
The Firebox X Edge supports SOCKS version 5 only. The Firebox does
not support authentication or DNS (Domain Name System) resolu-
tion.
NOTE
Configure the SOCKS-compatible application to connect to IP
addresses and not to domain names. Applications that can only
reference domain names are not compatible with the Firebox X
Edge.
Some SOCKS-compatible applications that function correctly when
used through the Firebox X Edge are ICQ, IRC, and AOL Messenger.
NOTE
When a computer in the trusted network uses a SOCKS-
compatible application, other users on the trusted network have
free access to the SOCKS proxy on that computer. Disable SOCKS
on the Firebox to prevent this security risk. See “Disabling SOCKS
on the Firebox” on page 74.
Configuring your SOCKS application
To allow a SOCKS-compatible application on a computer in the
trusted network to communicate with a computer on the external
network, configure the application as described below. To make
these settings, refer to the user’s guide for the application.