Re: [fw-wiz] Defense in Depth to the Desktop

From: Frederick M Avolio (fred_at_avolio.com)
Date: 12/13/04

  • Next message: Chris Pugrud: "Re: [fw-wiz] Defense in Depth to the Desktop"
    To: "Paul D. Robertson" <paul@compuwar.net>, Chris Pugrud <cpugrud@yahoo.com>
    Date: Mon, 13 Dec 2004 17:48:56 -0500
    
    

    At 04:30 PM 12/13/2004 -0500, Paul D. Robertson wrote:
    > > > This
    > > > > is the classic "eggshell" weakness of network security, hard and
    > crunchy on
    > > > the
    > > > > outside, soft and chewy on the inside. The Strong Internal Network
    > Defense
    > > >
    > > > I don't think I'd use eggshell to denote hard ;)
    > > >
    > > But I would. It's relatively hard compared to what's inside, but, as
    > you note ...

    And this is all an example of the loss of historical data we experience in
    network security. (I've ranted on it here:
    http://www.ianetsec.com/news/all_fc_avolio1.htm).

    Of course, it is not like an egg. It is like a candy bar that has a
    "crunchy shell around a soft, chewy center" (Cheswick describing the Bell
    Lab's network defense in "The Design of a Secure Internet Gateway."

    Fred

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Chris Pugrud: "Re: [fw-wiz] Defense in Depth to the Desktop"