Great Circle Associates Firewalls
(April 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Firewalls at lower levels?
From: "KM" <goertzek @ gateway . wangfed . com>
Date: Fri, 5 Apr 96 10:32:33 -0500
To: firewalls @ GreatCircle . com
Reply-to: "KM" <goertzek @ wangfed . com>

In message <01I35FD8T9O2003CBE @
 mc .
 duke .
 edu>  writes:
> I was at a seminar presented by Stuart Holoman, Holocon Inc. 
> yesterday, and he said firewalls are not effective/implementable 
> below the session layer:
> 
> layer 7 - App support
> layer 6 - Presentation
> layer 5 - Session
> layer 4 - Transport
> layer 3 - Network
> layer 2 - Data link
> layer 1 - Physical
> 
> Any comments?
> I don't know if he was speaking in abstract terms (e.g., not many 
> people know how to make them effective). 


I find this very surprising.  It would appear that Mr. Holoman is dismissing out
of hand the efficacy of packet filters, which operate at the IP level.  He may 
well feel this way, but it would have been nice of him to state *explicitly* 
that he didn't think *PACKET FILTERS* were effective/implementable, rather than 
using OSI layer mumbo-jumbo to obfuscate his message.  If that was, indeed, his 
message (based on what he said, who can tell?).




K.M. Goertzel, Program/Project Manager
Secure Systems and Services Operation 
WANG FEDERAL, Inc.  
7900 Westpark Drive - MS 700 
McLean, VA  22102-4299  USA
TEL: 703-827 3914
FAX: 703-827 3161 
EMAIL:  goertzek @
 wangfed .
 com
WEB:  http://www.wangfed.com

+-------------------------------------------+
| I am not young enough to know everything. |
|                             - J.M. Barrie |
+-------------------------------------------+


Indexed By Date Previous: Re: complaining to the CEO
From: "Marcus J. Ranum" <mjr @ clark . net>
Next: Re: What layer?
From: "Bryan D. Boyle" <bdboyle @ stargate . erenj . com>
Indexed By Thread Previous: Re: Firewalls at lower levels?
From: security @ qualix . com (Nik D. Knoth)
Next: Re: Firewalls at lower levels?
From: gelbe @ panasonic . com (Gelb, Ed)

Google
 
Search Internet Search www.greatcircle.com