Great Circle Associates Firewalls
(April 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Re[2]: About the firewalls using RIP or static routes
From: "Andrew V. Stesin" <stesin @ elvisti . kiev . ua>
Date: Fri, 5 Apr 1996 23:11:40 +0300 (EET DST)
To: mhorn @ funb . com (Mark Horn [ Net Ops ])
Cc: firewalls @ greatcircle . com
In-reply-to: <199604051418 . JAA09872 @ funws302 . capmark . funb . com> from "Mark Horn [ Net Ops ]" at Apr 5, 96 09:18:43 am

# I don't think that's a very workable solution.  How do you enforce that
# routed will listen on the internal interface only?

	Filtering UDP port 520 on input, with interfaces
	explicitly specified.  Probably output, too?

# routing on the firewall is trivial:
# 
# 	Internal class B -> internal router
# 	Default -> external router

	That's probably the exact thing people are doing.

-- 

	With best regards -- Andrew Stesin.

	+380 (44) 2760188	+380 (44) 2713457	+380 (44) 2713560

	"You may delegate authority, but not responsibility."
					Frank's Management Rule #1.


References:
Indexed By Date Previous: Re: Securid BAD Tech Support
From: vin @ shore . net (Vin McLellan)
Next: HELP : FIREWALL
From: Frankinet Philippe <franki @ vki . ac . be>
Indexed By Thread Previous: Re: Re[2]: About the firewalls using RIP or static routes
From: "Mark Horn [ Net Ops ]" <mhorn @ funb . com>
Next: Re[4]: About the firewalls using RIP or static routes
From: Brian Murrell <Brian_Murrell @ bctel . net>

Google
 
Search Internet Search www.greatcircle.com