>
> I've been thinking about trying to run both sockd and the TIS fwtk
> proxies on the same bastion host. I could then offer socksified clients
> where its possible and the hosts that did'nt have such clients could
> still use the non-transparent TIS proxies. I can't see any reason
> why it would'nt work. Any commnts?
>
Works fine together. We use both for the same reasons (ms-dog applications are
a pain in the rear).
The TIS-fwtk alos provides a bit of security for incomming connections
as well.
> Are there any routers that would be better suited as a screening
> packet filter for a bastion host. A manufactor that has a sensible
> filtering language and good performance for those filters. Anybody
> have some recommendations?
>
References:
|
|