RE: [fw-wiz] Sources for Extranet Designs?

From: Paul Robertson (proberts_at_patriot.net)
Date: 02/23/04

  • Next message: Wes Noonan: "RE: [fw-wiz] Sources for Extranet Designs?"
    To: Daniel Linder <dan@linder.org>
    Date: Mon, 23 Feb 2004 16:45:07 -0500 (EST)
    
    

    On Mon, 23 Feb 2004, Daniel Linder wrote:

    > Is there such thing as a SQL front end proxy? I would think with more
    > security devices employing "layer 8" (yeech, marketing speak) filtering a
    > SQL security proxy that could be programmed with limits such as
    > databases/tables/columns, number of rows returned, etc this might be a
    > good first line of defense...

    There are better ways to handle this, in the application.

    Stored Procedures.

    Applications shouldn't be able to gather arbitrary data, it's always a bad
    idea.

    Paul
    -----------------------------------------------------------------------------
    Paul D. Robertson "My statements in this message are personal opinions
    proberts@patriot.net which may have no basis whatsoever in fact."
    probertson@trusecure.com Director of Risk Assessment TruSecure Corporation
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Wes Noonan: "RE: [fw-wiz] Sources for Extranet Designs?"

    Relevant Pages

    • Re: Technical: heels on foot plate?
      ... tantamount to picking a fight? ... that is not *picking* a fight, that is defense. ... What did I fool myself into proving, Paul? ... No, I did not lie. ...
      (rec.sport.rowing)
    • Re: [fw-wiz] An article from Peter Tippett/TruSecure...
      ... On Mon, 10 Mar 2003, Paul D. Robertson wrote: ... that defense in depth 1) buys the organization time in dealing with new ... For many companies, accepting Darren Reed's ... costs of maintenance slightly. ...
      (Firewall-Wizards)
    • Re: ATWT - Emily/spoiler spec
      ... jail time with a defense of pre-partum psychosis. ... and Paul did the nasty most recently. ... seem to do all the time - Dusty will decide not to press charges. ...
      (rec.arts.tv.soaps.cbs)
    • Re: ATWT - Emily/spoiler spec
      ... jail time with a defense of pre-partum psychosis. ... and Paul did the nasty most recently. ... seem to do all the time - Dusty will decide not to press charges. ...
      (rec.arts.tv.soaps.cbs)
    • Re: Poison, From the Far Right? (Rocket Fuel...)
      ... :Paul F. Dietz wrote: ... :>I've found it's useful to characterize a position by the quality of ... :>arguments advanced in its defense (on the theory that the best arguments ...
      (sci.space.policy)