Great Circle Associates Firewalls
(June 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: On the wire subnet ...
From: reh @ cs . UMD . EDU (Richard Huddleston)
Date: Mon, 6 Jun 1994 09:38:02 -0400
To: R.ROSSMAN/ARSC @ cgsmtp . comdt . uscg . mil, paul @ hawksbill . sprintmrn . com
Cc: firewalls @ GreatCircle . COM

Rodger -- 

You've described a perfectly valid IP network.  A Class B network with
a netmask of 255.255.255.0, in fact.  

Unisys marketing hype notwithstanding, CTOS doesn't have any magic powers.  

The IP traffic is tunneled over X.25 -- you're on MILNET.   And, if you
think about it, Paul's use of the word "cloud" is exactly what you've
drawn.  Paul's response may have been hurried, but it wasn't really
inaccurate. 

Regards,

Richard 

* Paul Ferguson,  You responded to a firewall question and stated:
* 
* **********************************************************************
* If by "it" you mean the firewall device itself, its certainly not necessary
* to allocate an entire class "c" network address for a single device. In fact,
* you really can't because the interfaces on the box must belong to the
* IP network(s) that share the "wire" (or cloud, as it were).
* **********************************************************************
* 
* I have heard this before, but have never understood it.  The reason I 
* have a hard time with it is because my system is set up with both X25 
* and Ethernet connections and they are all the same subnet.
* 
* ___________________________________________Ethernet Backbone, North Carolina
* |                   |                  |
* |                   |                  |
* 152.119.239.200     152.119.239.201    152.119.239.202
*      |                   |                  |
*      |                   |                  |
*      \                   |                 /
*       \                  |                /
*        <--------------------------------->
*       <                                   >
*      <      The X25 Cloud                  >
*       <                                   >
*        <--------------------------------->
*       /                  |                \
*      /                   |                 \
*    152.119.239.203     152.119.239.204    152.119.239.205
*    Alaska              Houston            SanDiego
* 
* 
* This works without routers or bridges.
* It works on the CTOS operating system.
* I understand UNIX won't do this.
* But I don't understand why.
* If CTOS does it, why can't UNIX or Routers do it?
* 
* ___________________________________________________________________________
* Rodger Rossman                       |                                     
* Network Administrator                | R.ROSSMAN/ARSC @
 cgsmtp .
 comdt .
 uscg .
 mil
* USCG/Aircraft Repair & Supply Center | voice phone (919) 335-6319          
* Weeksville Road                      |                                     
* Elizabeth City, NC  27909  USA       |                                     
* ___________________________________________________________________________
* 
* 
* 

Indexed By Date Previous: Re: Application firewall behavi
From: sdw @ meaddata . com (Stephen Williams)
Next: Re: Cisco software update?
From: "s.millions" <stacy @ aix-a . sobeco . com>
Indexed By Thread Previous: Re: On the wire subnet ...
From: paul @ hawksbill . sprintmrn . com (Paul Ferguson)
Next: Re: On the wire subnet ...
From: brian @ lloyd . com (Brian Lloyd)

Google
 
Search Internet Search www.greatcircle.com