Great Circle Associates Firewalls
(December 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: FireWall for Dial-In Users
From: Jon Stitzel <stitzelj @ mr . malmstrom . af . mil>
Date: Mon, 22 Dec 1997 07:30:53 -0700
To: "firewalls @ greatcircle . com" <firewalls @ GreatCircle . COM>
In-reply-to: <349AC6F8 . 7FED800B @ sapic . com>

At 10:11 PM 12/19/97 +0300, otaibi @
 sapic .
 com wrote:
>Hello everyone,
>    Is it possible to have a firewall to protect the private network
>from the dial-in users ?
>We have an internal LAN allowing some users to dial-in to our interanet
>(using Windows NT RAS) and thinking to have a firewall to protect our
>LAN.
>    Does firewalls work with modems as external interfaces instead of
>the normal ethernet interfacs ?
>If yes, how it will be done ? I appreciate any help.
>Thanks all & regards,
>Mr. Hamoud Otaibi.
>

We have that problem, too.  Users who feel the need for their own modems or
RAS.  We wrote a paragraph into our security policy denying users that
right.  If any user still feels the need, we re-home their LAN connection
outside the firewall, in the DMZ.

-Stitz



References:
Indexed By Date Previous: Re: Split DNS configuration
From: Christophe Dupre <cdupre @ risq . qc . ca>
Next: Re: again & again & again -- is there really a SERVER ?
From: "Michel Lavondes" <lavondes @ tidtest . total . fr>
Indexed By Thread Previous: FireWall for Dial-In Users
From: otaibi @ sapic . com
Next: Re: FireWall for Dial-In Users
From: Steve Kruse <jsk347 @ sprynet . com>

Google
 
Search Internet Search www.greatcircle.com