Great Circle Associates Firewalls
(May 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: RE: Config Files
From: David Alayeto Salvador <davidal @ moloc . cps . unizar . es>
Date: Wed, 7 May 1997 08:41:49 +0200 (MET DST)
To: gcrum @ us-state . gov
Cc: Firewalls @ GreatCircle . COM
In-reply-to: <Chameleon . 970506064842 . gary @ crumrig . fadpc . im,us-state.gov>

Thanks for your interest, but I was not uninformed. I just didn't
understand the whole concept of Firewall, but I do know all -almost all-
about configurations. You forgot to talk about screened hosts or screened
subnets, which allow the dual homed host to not to be dual - it's not
necessary since it's connected directly to the internal network and it has
nothing to do with packet filtering, just has to redirect the internal
traffic to a router which does the packet filtering tasks. Hence better
is to use a peripheral network to be the home of the bastion host, which
is isolated by two routers, one connecting to the internal network and the
other to the Internet.

I just don't know about configuring IN A REAL NET those items which are
part of the firewall. I would like to see some config files of a router,
or the file hosts.allow or hosts.deny, etc.

Thank you for your interest.

*************************************************
*  David Alayeto Salvador
*  E-mail addresses:
*    davidal @
 prometeo .
 cps .
 unizar .
 es
*    davidal @
 oja .
 cps .
 unizar .
 es
*  Quinto de Ingenieria Informatica - CPS
*************************************************

-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: 2.6.i

mQBtAjJ3V/gAAAEDAM8Bb3yhVsdnMbjNU0kkfRmaXZlfI5wn50Syhap1/ObBLcQ2
xLdAoGJTYhHjVD89vMRnYdduOSUaHQLifPMJCCJA3wS4ji9mfagrNOgK7jIkU7bO
Fjp5tbnP+LTqgMxcKQAFEbQ3RGF2aWQgQWxheWV0byBTYWx2YWRvciA8ZGF2aWRh
bEBwcm9tZXRlby5jcHMudW5pemFyLmVzPg==
=vuMi
-----END PGP PUBLIC KEY BLOCK-----


Indexed By Date Previous: Packet Capturing
From: "Mr. Leon OBrien" <leon @ networx . com . au>
Next: Re: Config Files
From: David Alayeto Salvador <davidal @ moloc . cps . unizar . es>
Indexed By Thread Previous: Access policy (was: Config Files)
From: Arjan Vos <arjan @ pino . demon . nl>
Next: Re: Config Files
From: David Alayeto Salvador <davidal @ moloc . cps . unizar . es>

Google
 
Search Internet Search www.greatcircle.com