Great Circle Associates Firewalls
(June 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: NNTP as a trusted service
From: howard . b . owen @ octel . com (Howard B Owen)
Date: Wed, 15 Jun 94 10:35:50 PDT
To: firewalls @ greatcircle . com
Cc: jhawk @ panix . com . uunet!corecom . com!dave, uunet!osi . curtin . edu . au!tomc @ gw1 . octel . com
In-reply-to: John Hawkinson's message of Wed, 15 Jun 1994 01:44:31 -0400 (EDT) <199406150544 . AA15003 @ panix . com>


>   That's great. Then you can write a wrapper to check a checksum on your wrapper
>   to make sure that no one has tampered with that, right?
>

    You could put your checker on read-only media. Better yet, you
could put a good portion of your executable code on a read-only HD.

    Has anyone done this? We're starting to try it. I'm using BSDI,
and I'm hoping to get sync to ignore / and /usr... 8). Swap would seem
to be a real problem.

--
Howard Owen, Sys Admin		           internet:              hbo @
 octel .
 com
Octel Communications Corporation           BITNET:            HBO @
 VOODOO .
 BITNET
890 Tasman Dr MS 05-04 Milpitas CA 95035   DECNET Internet:          45180::HBO
"I am not a pay TV service!"               Telephone:       408-321-6576 (work)


Follow-Ups:
References:
Indexed By Date Previous: Re: using socks to hide internal IP addresses
From: ericm @ MicroUnity . com (Eric Murray)
Next: using socks to hide internal IP addresses
From: francis @ avalle . insoft . com (John [Francis] Stracke)
Indexed By Thread Previous: Re: NNTP as a trusted service
From: John Hawkinson <jhawk @ panix . com>
Next: Re: NNTP as a trusted service
From: blymn @ awadi . com . AU (Brett Lymn)

Google
 
Search Internet Search www.greatcircle.com