Great Circle Associates Firewalls
(November 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Firewalls built on SCO UNIX
From: prologic!sar @ uunet . uu . net
Date: Fri, 4 Nov 1994 18:11:21 -0500
To: Christopher Klaus <uunet!GreatCircle . COM!firewalls-owner @ uunet . uu . net>, uunet!missesky . med . osd . mil!psteffen @ uunet . uu . net (Pat Steffensen)
Cc: uunet!GreatCircle . COM!firewalls @ uunet . uu . net

 >> I'm a SCO UNIX system administrator just getting into the basics
 >> of building a firewall on our net...I downloaded TIS' Firewall
 >> Toolkit, but haven't heard if anyone has used this successfully on the
 >> SCO UNIX ODT 3.0 platform as yet?  Do you have any recommendations?
 >
 >When I talked with the security people at SCO, they said there was no
 >options for turning off source routing.  So, unless you have the src code
 >to SCO or they have added that option within the last month or so,
 >making a SCO system a firewall is like adding a fence around your network
 >with the gate wide open.  

In the next release of SCO ODT ("Everest"), there is an option
to disable nonlocal source routes.  Pat, check out the space.c
file for IP when you get the Beta release.  I think that nonlocal
source routes will be disabled by default.

Steve Rago
sar @
 plc .
 com

Indexed By Date Previous: Re: W4Wg security issues?
From: johns @ oxygen . house . gov (John Schnizlein)
Next: Re: IP forwarding and ndd under Solaris 2.x
From: harker @ harker . com (Robert Harker)
Indexed By Thread Previous: Re: Firewalls built on SCO UNIX
From: Marcus J Ranum <mjr @ tis . com>
Next: IPX Protocol Overhead (FW: IPX, and packet flooding.)
From: "Glassey, Todd @ ITD Ma" <TGLASSEY @ MSM . EPRI . COM>

Google
 
Search Internet Search www.greatcircle.com