Great Circle Associates Firewalls
(July 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: summary: firewalls and B2
From: "Magossa'nyi A'rpa'd" <mag @ bunuel . tii . matav . hu>
Date: Fri, 11 Jul 1997 08:32:03 +0100
To: Firewall list <firewalls @ GreatCircle . COM>

Hi!

This point isn't very clear for me now, but here is what I could  find out:

Orange book criteria has nothing to do with the firewall's firewalling
functionality. Red book criteria might be applicable more. However when the
firewall's OS has B1 rating, it means better defence in  case of buffer
overruns and other programming errors should occur.
Some firewalls use a "hardened OS", which ranges from simple bug fixes to
real B1 security.
However it has been pointed out that an OS can be buggy with  B1 certificate
as well (I have been courious how such a buggy OS like HP-UX could have a B1
version), and B1 things not necessarily needed for a firewall,  as it just
increaes the complexity.

Some people specifically warned  me that who talks  about B1 and firewall, 
doesn't know what he says, or simply salesperson.

Can you enumerate certifications  that are applicabble to firewalls?
The paperpusher people want certificates.
---
GNU GPL: csak tiszta forrásból



Follow-Ups:
Indexed By Date Previous: RE: What is this thing called Site Patrol??
From: uucp @ bns . attmail . com (Warning: Inconsistent UNIX 'From lines' were ignored)
Next: How secure is BGP? was Re: Two ISP's to one DMZ -
From: mikech @ avana . net
Indexed By Thread Previous: Opportunity Knocks!
From: Dear.Friend
Next: Re: summary: firewalls and B2
From: spencerj @ dg-rtp . dg . com (Jon Spencer)

Google
 
Search Internet Search www.greatcircle.com