Great Circle Associates Firewalls
(September 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Guaranteed trouble
From: Carson Gaspar <gaspar @ ms . com>
Date: Tue, 16 Sep 1997 12:29:26 -0400 (EDT)
To: firewalls @ GreatCircle . COM
In-reply-to: <3 . 0 . 32 . 19970916071533 . 007cd8f0 @ mail . the-wire . com>

On Tue, 16 Sep 1997, Anton J Aylward wrote:

> Mike, have you ever worked at a support desk or hotline?
> Those of us who have don't greet this kind of solution with
> wild enthusiasm.
> 
> Which is why we keep asking for better firewalls.

Ah. That's the problem. You _should_ be asking for better software. Virus
scanning on firewalls already exists (although it's a performance pig, and
can't deal with everything, and - well - you know the rest). The firewall
is just the _wrong_ place in the data model for this kind of thing. It may
be the expedient place (and frequently is), but the "correct" solution is
to stop such things the only place that has access to the unencrypted,
undecoded, unmangled document - the user's machine.

I'm pretty sure that there are virus checking programs that you can run
that will execute a program on the data file after they've vetted the
file. Setting up your helper app definitions to fire off the viewer by way
of the virus scanner would solve this particular problem, as well as many
others.

--
Carson Gaspar -- carson @
 tla .
 org gaspar @
 ms .
 com



Follow-Ups:
References:
Indexed By Date Previous: Re: Guaranteed trouble
From: "Tim Kirtley,Unix Systems Admin" <kirt @ internetmci . com>
Next: Re: WatchGuard for Linux
From: Alfred Huger <huger @ silence . secnet . com>
Indexed By Thread Previous: Re: Guaranteed trouble
From: Peter da Silva <peter @ baileynm . com>
Next: Re: Guaranteed trouble
From: Peter da Silva <peter @ baileynm . com>

Google
 
Search Internet Search www.greatcircle.com