RE: IPS (was: [fw-wiz] Sources for Extranet Designs?)

From: Frederick M Avolio (fred_at_avolio.com)
Date: 02/26/04

  • Next message: Paul Robertson: "RE: IPS (was: [fw-wiz] Sources for Extranet Designs?)"
    To: "Ben Nagy" <ben@iagu.net>, <firewall-wizards@honor.icsalabs.com>
    Date: Thu, 26 Feb 2004 17:27:58 -0500
    
    

    At 03:06 PM 2/26/2004 +0100, Ben Nagy wrote:
    >Intrusion Prevention can be done at a number of places
    >
    >1. The Firewall
    >2. The Network (inline IPS lives here)
    >3. The Host (cross platform issues here!)
    >- 3a. The Host Network level (TDI or driver stuff, where the current PFWs
    >live)
    >- 3b. The Host Kernel / Memory Mangement level (systrace, pax, and their
    >windows friends)

    4. The physical room/building.
    5. The policies and procedures.

    Sorry. I agree with Ben, but wanted to point out that the stuff that isn't
    sexy must not be forgotten. (I mean 4 and 5 here, not *me*. :-))

    Fred

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Paul Robertson: "RE: IPS (was: [fw-wiz] Sources for Extranet Designs?)"

    Relevant Pages

    • RE: can ping but not browse
      ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
      (Fedora)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.windowsxp.network_web)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.win2000.networking)
    • Re: Firewall for broadband connection
      ... A personal firewall application that runs on your computer will often be ... it clearly needs user intervention to apply updates. ... IP address, then VNC is a simple way to do ... I install VNC, even in a protected network, I always change the port ...
      (comp.security.firewalls)
    • RE: Hidden Ports
      ... this is done by the firewalls to prevent authenticated files from being replaced by trojans and connecting to the internet. ... kerio firewall ... or a program that already had network access attempted to ... > Depending on the Access setting for a component, ZoneAlarm Pro ...
      (Security-Basics)