Great Circle Associates Firewalls
(May 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Can you help me please?
From: eric!chris @ zebedee . manukau . ac . nz
Date: Thu, 26 May 94 14:26:54 -1200
To: firewalls @ greatcircle . com

I'm new to the list and quite inexperienced with firewalls and security
issues as discussed on this list.  I'm acting as Systems Administrator at
the Polytechnic and we have recently attached to the internet.  Due to serious
worries w.r.t. security of our systems I did not attach our network directly
to the internet.  The only 'internet activity' users on our network can
partake in is email.  To do anything else they dial in to zebedee, the system
connected to the internet.  See below.

                                                     Little bit of ethernet
  ======================================================================
          |                      |                   with just zebedee and the
          |                      |                   PC Router.
          |                      |
   +--------------+   +-----------------------+
   |ZEBEDEE       |   |PC Router with SLIP    |
   |Unix system   |   |link to local          |
   |with dial in  |   |University             |
   |access        |   |                       |
   +--------------+   +-----------------------+
          ||
          || UUCP link
          ||
   +--------------+
   |Unix system   |
   |              |
   |              |
   +--------------+
           |                                    Big bit of ethernet on
  ======================================================================
                                                which all our clients live

Presently this seems to work fine, with mail.  As our clients are becoming
more aware of the facilities available to them from the internet I must allow
them access to the internet from our 'Big bit of ethernet'.

So, the question!  Where do I start?  Is there any literature I can read that
will help identify strategies I should adopt?  Is there any hardware that I
should consider purchasing to help me out?

Any comments/ideas/pointers would be very greatly received.

Chris.

+--------------------------------------------------------------+
| Chris Stott           |     Telephone(H): +64 (0)9 266 1169  |
| Systems Administrator | Telephone(W) DDI: +64 (0)9 273 0734  |
| Manukau Polytechnic   |     Telephone(W): +64 (0)9 274 6009  |
| Auckland              |        Facsimile: +64 (0)9 273 0747  |
| New Zealand           |            Email: chris @
 manukau .
 ac .
 nz|
+--------------------------------------------------------------+


Indexed By Date Previous: Re: Mosaic and E-mail
From: long-morrow @ CS . YALE . EDU (H Morrow Long)
Next: Re: a bit off it :) part 2
From: btk @ matrix . cray . com (Bryan Koch)
Indexed By Thread Previous: Re: syslog time stamps
From: Marcus J Ranum <mjr @ tis . com>
Next: Re: Can you help me please?
From: Marcus J Ranum <mjr @ tis . com>

Google
 
Search Internet Search www.greatcircle.com