[fw-wiz] Worms, Air Gaps and Responsibility
From: Paul D. Robertson (paul_at_compuwar.net)
Date: 05/05/04
- Previous message: Paul D. Robertson: "RE: [fw-wiz] NAT Pseudo Security"
- Next in thread: Karl Mueller: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Karl Mueller: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Ben Nagy: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Devdas Bhagat: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Paul D. Robertson: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Marcus J. Ranum: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Rogan Dawes: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Mordechai T. Abzug: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Thomas W Shinder: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Melson, Paul: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Jean-Denis Gorin: "Re[2]: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Marcus J. Ranum: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Mike McNutt: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Claussen, Ken: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Claussen, Ken: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Dana Nowell: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Nathan C. Smith: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Paul D. Robertson: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Kelly, Chris W.: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: firewall-wizards@honor.icsalabs.com Date: Wed, 5 May 2004 08:24:40 -0400 (EDT)
Hospitals, banks, the U.K. Coast Guard... The damage from the latest
Microsoft-based worm isn't as widespread as that from the last one, but
it's pretty darned bad in point cases.
Why do people continue to connect critical production networks to
user/administrative networks?
Surely networking equipment is cheap enough that a real honest air gap
(not some marketingspeak switch thingie) isn't all that difficult to
deploy?
Air gaps make great firewalls. They rarely need upgrading, they're
low-power and low-heat, and they're less filling and taste great.
Worst-case, a few low-end firewalls to segment the users off from the
production stuff should be a no-brainer these days.
All the money, effort and time people are spending on IDS, IPS, and all
the other buzzword-compliant devices, and yet we still don't have good
solid separation and segmentation in places where, one would expect that
the responsibility for running a critical network would require some level
of protection to be displayed.
Paul
-----------------------------------------------------------------------------
Paul D. Robertson "My statements in this message are personal opinions
paul@compuwar.net which may have no basis whatsoever in fact."
probertson@trusecure.com Director of Risk Assessment TruSecure Corporation
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
- Previous message: Paul D. Robertson: "RE: [fw-wiz] NAT Pseudo Security"
- Next in thread: Karl Mueller: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Karl Mueller: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Ben Nagy: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Devdas Bhagat: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Paul D. Robertson: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Marcus J. Ranum: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Rogan Dawes: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Reply: Mordechai T. Abzug: "Re: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Thomas W Shinder: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Melson, Paul: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Jean-Denis Gorin: "Re[2]: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Marcus J. Ranum: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Mike McNutt: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Claussen, Ken: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Claussen, Ken: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Dana Nowell: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Nathan C. Smith: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Paul D. Robertson: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Maybe reply: Kelly, Chris W.: "RE: [fw-wiz] Worms, Air Gaps and Responsibility"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|