Great Circle Associates Firewalls
(June 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Gauntlet - How good is it?
From: John Betts <johnb @ aztec . co . za>
Date: Mon, 24 Jun 1996 22:29:07 +0200 (SAT)
To: pokey @ maddie . atlantic . com (Rick Romkey)
Cc: firewalls @ greatcircle . com
In-reply-to: <199606241453 . KAA00562 @ maddie . atlantic . com> from "Rick Romkey" at Jun 24, 96 10:53:39 am
Reply-to: johnb @ aztec . co . za

% 
% The web-based front-end (last time I worked with it) is fine if you
% have a run-of-the-mill network and the patience to deal with the gui.
% However, the gui is only usefull for setup and minor changes.  It
% doesn't allow you to write rules, setup custom proxies, etc.
%  
Please excuse me if I am missing something here, but I seem to note
a contridiction in what you have stated in your e-mails.

	A) One should not have to be a unix/ip guru to have to admin
	   a firewall
	B) The gauntlet web gui is only usefull for trivial things.

I dont know about you, but if someone wasnt capable of doing things
via vi on a text file at the command line, and knew their IP like
the back of their hands, I wouldnt want them doing anything more
other than trival minor changes, let alone writing rule sets,
and setting up custom proxies.

If they dont understand the application and the detailed need
for the custom proxies (which as a general rule would imply
good unix/ip knowledge), they should _not_ be opening their
network which they are trying to protect to services which
they do not understand.

If your company dosnt have anyone in its employ that dosnt 
understand firewalls, rather get a subcontracter who does,
to manage it for you.

My $0.5 worth, or R0.20 to the originator of this thread ;-)

ciao

--
John


--
John Betts, Aztec Internet Services Port Elizabeth, South Africa
johnb @
 aztec .
 co .
 za,  Tel. +27(0)41 303 475, Fax. +27(0)41 301 052
The world is complex.  The Sendmail configuration reflects this.


Follow-Ups:
References:
Indexed By Date Previous: Re: CIFS - To Firewall or not to Firewall ?
From: Frank Willoughby <frankw @ in . net>
Next: Re: Packet sniffers
From: Michael Ryan <mike @ networx . ie>
Indexed By Thread Previous: Re: Gauntlet - How good is it?
From: Rick Romkey <pokey @ maddie . atlantic . com>
Next: Re: Gauntlet - How good is it?
From: Rick Romkey <pokey @ maddie . atlantic . com>

Google
 
Search Internet Search www.greatcircle.com