Re: [fw-wiz] Exchange & Blackberry
From: Paul D. Robertson (paul_at_compuwar.net)
Date: 06/22/04
- Previous message: Claussen, Ken: "RE: [fw-wiz] Exchange & Blackberry"
- In reply to: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Next in thread: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Reply: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: strider@mailworks.org Date: Tue, 22 Jun 2004 08:13:42 -0400 (EDT)
On Tue, 22 Jun 2004 strider@mailworks.org wrote:
[Snip the good stuff...]
> As for Blackberry, it's a risk tradeoff. What's the chances of that
> outbound connection doing bad things vs. the pain of trying to get it
> config'ed in the DMZ and what would that buy you?
>
More importantly, what does your security policy say about the
requirements for such servers/services?
Every decision point shouldn't require a completely new assessment, it
should require going into a category of risk management that's already
outlined, with the appropriate software and hardware infrastructure needs
outlined, and adjusting for the quirks of the particular thing.
For instance "This type of server only gets access to the communications
segment," or "This type of server doesn't get carte blanch access to the
internal network," or "This type of server has to be on a separate
external segment" are all valid security policy statements- but the policy
should address such things at a macro level, with detailed adjustments
for implementation.
Paul
-----------------------------------------------------------------------------
Paul D. Robertson "My statements in this message are personal opinions
paul@compuwar.net which may have no basis whatsoever in fact."
probertson@trusecure.com Director of Risk Assessment TruSecure Corporation
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
- Previous message: Claussen, Ken: "RE: [fw-wiz] Exchange & Blackberry"
- In reply to: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Next in thread: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Reply: strider_at_mailworks.org: "Re: [fw-wiz] Exchange & Blackberry"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|