Great Circle Associates Firewalls
(August 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: PIX router
From: Blast <blast @ worldbit . com>
Date: Fri, 30 Aug 1996 21:28:25 -0700 (PDT)
To: Mike Jones <jonesmd @ unifiedtech . com>
Cc: firewalls @ GreatCircle . COM
In-reply-to: <199608301720 . NAA01556 @ bass . com . >

On Fri, 30 Aug 1996, Mike Jones wrote:

> I'm looking for information on why (or why not) a Cisco PIX box is
> adequate as a firewall. My gut feeling is that it does part of the job,
> but that it's not something you should rely on as a complete solution.

I have posted to the list before reporting my findings on this machine.
My focus (because of limited time) was on how it managed setting a stateful
policy on UDP traffic.  The lastest version of the software lets the
firewall manager configure (ie shoot self in foot or win the war) the policy
with UDP traffic.  My posting here before reported that I was really disapointed
at the limited control but now I hear from the lead engineer that all
my wishing have come true. :-)

I take delivery on one of these beasts this week so I will report back on
the 'features' and the software rev.  I have a laptop with three ethernet
cards in it (2PCMCIA and one Xircom Paralell ether) that I use to acid test.

Over and out.
--blast
   +--------------------------------------------------------------------+
   \    Tim Keanini    |         "The limits of my language,            /
   /    aka blast      |         are the limits of my world."           \
   \                   |         --Ludwig Wittgenstein                  /
   \                   +================================================/
   |Key fingerprint =  7B 68 88 41 A8 74 AB EC  F0 37 98 4C 37 F7 40 D6 |
   /    PUB KEY: http://www-swiss.ai.mit.edu/~bal/pks-commands.html     \
   \  <blast @
 worldbit .
 com>                                              /
   +--------------------------------------------------------------------+



References:
  • PIX router
    From: jonesmd @ unifiedtech . com (Mike Jones)
Indexed By Date Previous: Re [2] Re: Data/Network/Computer Security personnel
From: mikem @ lassie . intelsol . com (Michael Mac Runnel)
Next: Re: Kerberized Proxies
From: Adam Safier <asafier @ csc . com>
Indexed By Thread Previous: PIX router
From: jonesmd @ unifiedtech . com (Mike Jones)
Next: Re: PIX router
From: Mike Parsons <mikeep03 @ Interpath . com>

Google
 
Search Internet Search www.greatcircle.com