Great Circle Associates Firewalls
(December 1992)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: on breaking firewalls
From: Greg Wells <greg @ katie . west . msi . com>
Date: Thu, 03 Dec 92 11:30:45 +0000
To: Bill Wohler <wohler @ sap-ag . de>
Cc: firewalls-digest @ sap-ag . de, greg @ katie . west . msi . com
In-reply-to: Your message of "Wed, 02 Dec 92 15:04:20 +0100." <9212021404 . AA59567 @ is0001 . sap-ag . de>

Hi Bill,

I have an interest in a group of firewall breakers to test security
before a break in.  

A couple of issues leap to mind:

How would we determine the integrity of the people in the group?

How do we get around the legal issues, after all, breaking in
is illegal even if the purpose is for the good of the site.  A verbal
contract is not likely to hold up in court, and management may not
honor contracts made by administrators.

Before I sign off, I would like to explain my interest.
I have suffered greatly in the past because of break ins 
at two different sites.  Security is a major drag on productivity
and twice as bad when security fails to prevent break ins.  I 
am determined to learn enough about hacking by breaking my system
to prevent any break ins in the future.  However I prefer a
black box testing paradigm.  I believe a group of like minded 
administrators would be beneficial to the entire community.

Greg Wells
greg @
 west .
 msi .
 com










References:
Indexed By Date Previous: on breaking firewalls
From: tep @ tots . Logicon . COM
Next: Re: packet filter metalanguage
From: avalon @ coombs . anu . edu . au (Darren Reed)
Indexed By Thread Previous: on breaking firewalls
From: tep @ tots . Logicon . COM
Next: Re: on breaking firewalls
From: Brent Chapman <brent @ GreatCircle . COM>

Google
 
Search Internet Search www.greatcircle.com