Great Circle Associates Firewalls
(August 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Firewalls book from Cheswick and Bellovin
From: Dave Mack <dmack @ net . bio . net>
Date: Sat, 13 Aug 1994 17:14:44 -0700 (PDT)
To: alastair @ cadence . com (Alastair Young)
Cc: firewall-book @ research . att . com, firewalls @ greatcircle . com
In-reply-to: <9408121538 . ZM27034 @ cds1004> from "Alastair Young" at Aug 12, 94 03:38:16 pm

> 
> On Aug 12, 10:40am, Dave Mack wrote:
> > Subject: Re: Firewalls book from Cheswick and Bellovin
> > >
> > > On Thu, 11 Aug 1994, Jonah Giacalone wrote:
> > >
> > > > Errata to the book can be obtained by anonymous FTP from
> > > > ftp.research.att.com in: /dist/internet_security/firewall.book
> > >
> > > Ummm, are there actually any errata?  That directory contains nothing
> > > but assorted text and a GIF of the front cover...
> >
> > Well, I sent in a minor item which was acked by both authors about
> > a week after the book hit the stands, so, yes, there are errata, and,
> > no, they're not in that directory.
> >
> > [FWIW: page 56, paragraph beginning "A TCP conversation" near
> > midpage. Fourth line. "an initial open request packet in TCP does not have
> > the set in the..." should read "an initial open request packet in TCP
> > does not have the RST bit set in the...". As I said, a minor item.]
> >
> 
> Most packets don't have RST bit set. The first packet is the only one which
> doesn't have ACK set. Isn't that what you meant?

Ecch. This is what happens when you try to do things from memory without
actually thinking about what you're typing. I hope everyone made the
correction in pencil. Try this version:

[FWIW: page 56, paragraph beginning "A TCP conversation" near
midpage. Fourth line. "an initial open request packet in TCP does not have
the set in the..." should read "an initial open request packet in TCP
does not have the ACK bit set in the...". As I said, a minor item.]

I suspect that I got it right when I sent it in to
firewall-book @
 research .
 att .
 com, since neither of the authors hammered
me for having my brain in my posterior, but I'll CC them on this
to make sure.

-- 
Dave Mack
Manager, Computer Facilities
Senior Systems Administrator
IntelliGenetics, Inc./BIOSCI Project


References:
Indexed By Date Previous: Mount ower Internet
From: Tony Li <tli @ cisco . com>
Next: md5 signatures needed for critical firewall packages
From: John Larson <jlarson @ parc . xerox . com>
Indexed By Thread Previous: Re: Firewalls book from Cheswick and Bellovin
From: "Alastair Young" <alastair @ cadence . com>
Next: RE: Firewalls book from Cheswick and Bellovin
From: Terry Guder <TERRYG @ mjt . com>

Google
 
Search Internet Search www.greatcircle.com