|
Firewalls (December 1992) |
> Bill Cheswick suggested that a router be configurable to send any > rejected packet to some arbitrary host and port. I'd like to go a > bit further -- I want the ability to reinject dropped packets at the > the firewall, if they've been properly blessed by some other machine. > This needs to be protected, of course, by suitable authentication > mechanisms. That's an awful lot of rope. Eliot Lear [lear @ sgi . com]
|