Great Circle Associates Firewalls
(November 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: 3 firewalls broken into?
From: Nick Simicich <njs @ scifi . maid . com>
Date: Sun, 26 Nov 1995 10:57:42 -30000
Cc: firewalls @ GreatCircle . COM
In-reply-to: <v02130526acdd36619061 @ [198 . 102 . 244 . 42]>

On Sat, 25 Nov 1995, Brent Chapman wrote:

> Every reasonable firewall I can think of is capable of meeting the second
> condition above, for the network architectures used by most sites.  The
> question each individual site has to ask is, can they meet the first
> condition above (i.e., can they say "we don't trust anything beyond our
> perimeter", and actually get away with it).  Many (most?) sites can, some
> can't.

Nameservice usually seems to be a major exception.  Everyone trusts 
nameservers by IP address to locate other machines.  Hopefully only 
outside of their perimiter.

Nick Simicich - njs @
 scifi .
 emi .
 net - (last choice) njs @
 bcrvm1 .
 vnet .
 ibm .
 com
http://scifi.emi.net/njs.html -- Stop by and Light Up The World!



References:
Indexed By Date Previous: Re: CISCO 2511 with NTS RAS
From: Paul Ferguson <pferguso @ cisco . com>
Next: re: Microsoft products
From: "A. Padgett Peterson, P.E. Information Security" <PADGETT @ hobbes . orl . mmc . com>
Indexed By Thread Previous: Re: 3 firewalls broken into?
From: Brent @ GreatCircle . COM (Brent Chapman)
Next: Re: 3 firewalls broken into?
From: Darren.Harter

Google
 
Search Internet Search www.greatcircle.com