[fw-wiz] worm + VPN + firewall

From: Mordechai T. Abzug (morty_at_frakir.org)
Date: 08/14/03

  • Next message: TSimons_at_Delphi-Tech.com: "RE: [fw-wiz] Off Topic: 802.11 Dongles"
    To: firewall-wizards@nfr.com
    Date: Wed, 13 Aug 2003 19:29:53 -0400
    
    

    Has anyone had a user's external Blasterized system that VPNd past a
    firewall and compromised an internal network? It would be nice to
    have conrete examples for the "VPNs should terminate outside
    firewalls" argument.

    - Morty
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: TSimons_at_Delphi-Tech.com: "RE: [fw-wiz] Off Topic: 802.11 Dongles"

    Relevant Pages

    • Re: Inline firewalls vs. Inline firewalls "spaced out"
      ... You internal network should only be able to talk outwards, ... the first design. ... a third firewall has to be compromised. ... > greater security to your web boxes than the first design. ...
      (Security-Basics)
    • RE: Proxy & Firewall Implementation
      ... Put a firewall between your internal network and the DMZ which allows ... DMZ servers to the gills. ...
      (Security-Basics)
    • Re: Firewall Design
      ... > The etherswitch from the router will have the Firewall and my Web ... and the second is connected to another switch on the LAN. ... Your DMZ systems should be publicly accessible, ... filtering in front of your DMZ systems, as well as your internal network. ...
      (comp.security.firewalls)
    • Re: Public Addresses Used Internally
      ... quality of the firewall. ... With public IPs access must only route into internal network ... There is increased cost with holding the public IPs, ...
      (microsoft.public.security)
    • Re: Setting up SBS 2000 w/SonicWall Firewall VPN, Need help.
      ... SBS or the internal network? ... If you have two nics and are using SBS ... I would guess again that with a single nic server that the ... >the firewall. ...
      (microsoft.public.backoffice.smallbiz2000)