Great Circle Associates Firewalls
(November 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Transparent Proxys
From: afx @ ibm . de (Andreas Siegert)
Date: Thu, 24 Nov 1994 21:57:45 +0100 (CET)
To: peter @ sea-europe . co . uk (Peter Cox)
Cc: greulich @ math-stat . unibe . ch, firewalls @ GreatCircle . com
In-reply-to: <94Nov24 . 173055gmt . 32406 @ janus . sea-europe . co . uk> from "Peter Cox" at Nov 25, 94 00:33:46 am

Peter Cox wrote:
> >Does it also use the idea of simulating connections and in this simulation
> >adding additional communication for performing user authentication?
> >The idea seems simple - why is it usually not used? Are there
> >security weaknesses inherent that I oversee? What are disadvantages
> >of this approach?
> 
> 
> Janus does not provide additional authentication for outgoing connections,
> there is no need, the authentication is a task for the remote system.

I beg to differ.  
Of course I want outgoing authentication for certain services/users/machines.
Unauthenticated external access is fine if you work in an environment that is
used only by professionals that really know what they are doing.  But there
are plenty of other situations where one does not want everybody on the inside
to access external systems.

cheers
afx
-- 
Andreas Siegert / Postmaster   IBM Deutschland GmbH   |   Never grep a yacc
AIX Field Support Center       Anzinger Strasse 29    |   by the i-node!
Internet: afx @
 ibm .
 de           D-81671 Muenchen       |   Opinions are my own,
VNET: AFX @
 IPNET                Voice: (49)-(89)-4504-4509 not IBM's.


Follow-Ups:
References:
Indexed By Date Previous: Re: MBONE and Firewalls
From: mcr @ milkyway . com (Michael Richardson)
Next: Re: MBONE and Firewalls
From: Shawn Instenes <shawni @ llnl . gov>
Indexed By Thread Previous: Re: Transparent Proxys
From: "Peter Cox" <peter @ sea-europe . co . uk>
Next: Re: Transparent Proxys
From: Steven Lamb <slamb @ border . com>

Google
 
Search Internet Search www.greatcircle.com