Great Circle Associates Firewalls
(February 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Los Alamos breakins
From: thompson jeffrey w <jwthomp @ cs . uiuc . edu>
Date: Sat, 24 Feb 1996 01:11:38 -0600 (CST)
To: firewalls @ greatcircle . com
In-reply-to: <2 . 2 . 16 . 19960223134827 . 1abf0870 @ pop . trusted . com> from "Frederick M Avolio" at Feb 23, 96 08:48:27 am
Reply-to: jwthomp @ uiuc . edu

> At 07:57 AM 2/23/96 -0500, Bryan D. Boyle wrote:
> >This surprises you?  How many people do you know still running windows
> >3.1 on m$dos 3.3???
> >
> >Legacy apps show up all over the place.  Inertial reasons mostly.
> >This is an example as to why systems management and security are
> >an ongoing venture, not just a set-and-forget one-time thing "yeah,
> >we are ok..." mindset.
> 
> To expand slightly on what Bryan says, and probably state the obvious in the
> effort, that is why firewalls are important, and that is why they are here
> to stay. Controlled gateways are thousands of years old, and will be around
> for thousands of years more. (I'm making an educated guess... I'm not a
> prophet in the true sense :-).)
> 
> No matter what you do to the desk top, unless you control the configuration
> of every desktop every minute of the day you cannot depend completely on
> secure hosts.

On the same token, it is not safe to completely rely on firewalls to provide
protection for your site.  (They are but one aspect.) While they may make 
remote network intrusion more difficult,  the problem is not insurmountable.  
A good balance between network security, host security, and general security
awareness must be maintained.  Otherwise, only one security mechanism needs 
to be defeated after which the entire network opens wide up.

Jeff Thompson

Jeff Thompson(jwthomp @
 uiuc .
 edu)        Argus Systems Group,
http://www.uiuc.edu/ph/www/jwthomp       - Trusted Network Kernel Developer


Follow-Ups:
References:
Indexed By Date Previous: Linux Disadvantages
From: Mustapha Obeid <musta @ eve . info . umoncton . ca>
Next: Linux Disadvantages (Edited Question)
From: Mustapha Obeid <musta @ eve . info . umoncton . ca>
Indexed By Thread Previous: Re: Los Alamos breakins
From: Frederick M Avolio <avolio @ trusted . com>
Next: Re: Los Alamos breakins
From: Rolf Weber <weber @ iez . com>

Google
 
Search Internet Search www.greatcircle.com