Re: [fw-wiz] Benefit of firewall over NAT-only 'protected' network

salgak_at_speakeasy.net
Date: 05/28/03

  • Next message: Paul Robertson: "Re: [fw-wiz] help in firewall"
    To: ark@eltex.net, "Paul Robertson" <proberts@patriot.net>
    Date: Wed, 28 May 2003 13:54:08 +0000
    

    > -----Original Message-----
    > From: ark@eltex.net [mailto:ark@eltex.net]
    > Sent: Wednesday, May 28, 2003 12:43 PM
    > To: 'Paul Robertson'
    > Cc: 'Hugh Blandford', firewall-wizards@honor.icsalabs.com
    > Subject: Re: [fw-wiz] Benefit of firewall over NAT-only 'protected' network
    >
    > If they really do not use it, you are completely right, any unused
    > port should be blocked (if we use packet filtering firewalls. i run
    > irc from the office but i use proxy ;-)

    Actually, my approach to firewalling is lock EVERYTHING down, then selectively open ports as needed. That way, if somebody tries something on a "novel" port, you're protected. . .

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Paul Robertson: "Re: [fw-wiz] help in firewall"