Great Circle Associates Firewalls
(April 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: firewall performance limitation
From: Alan Hannan <alan @ mid . net>
Date: Mon, 24 Apr 1995 06:59:03 -0500 (CDT)
To: fc @ all . net (Dr. Frederick B. Cohen)
Cc: firewalls @ GreatCircle . COM
In-reply-to: <9504232318 . AA09937 @ all . net> from "Dr. Frederick B. Cohen" at Apr 23, 95 07:18:48 pm

> 
> I would like very much to believe you, but apparently, you have not
> tested this and so don't know if it is really true.  In fact, almost
> every system I am aware of has far different security properties under
> high-load conditions than under low-load conditions.  The "most" people
> that treat these issues separately are perhaps in need of additional
> education.
> 

  Frederick, you continually sit in the back of the room and raise your hand
pointing our ways that things _could_ be broken, and how they _might_ have 
a problem, and how people don't design firewalls with the right considerations.

  Frankly, I think your observation about high load v. low load systems is 
silly, and while I am open to correction, I know of no commonly used firewall 
Operating System that performs (security-wise) differently under high load than 
it does under low load.  If you know of a specific example of how this can 
manifest itself, then I would be glad to hear it.  I'm just tired of this 
firewall banter, it reminds me of kindergarten where everyone has to tell 
their own version of how they see something, and how something might happen, 
without the fortitude to setup a test lab and determine if it does.

-- 
Alan Hannan	(402) 472-0241 (voice)  Networked Systems Administrator
		(402) 472-0240 (fax)	MIDnet, the United States oldest
					Regional Internet Service Provider

" They that can give up essential liberty to obtain a little temporary safety 
deserve neither liberty nor safety. " - Benjamin Franklin


References:
Indexed By Date Previous: Re: Lecture on firewall performance
From: jsanchez @ gmv . es (Julio Sanchez)
Next: Re: Firewall running at T3 speeds
From: "Frank Byrum" <byrum @ vbv . dec . com>
Indexed By Thread Previous: Re: firewall performance limitation
From: ericm @ lne . com (Eric Murray)
Next: Re: firewall performance limitation
From: peter @ nmti . com (Peter da Silva)

Google
 
Search Internet Search www.greatcircle.com