Re: [fw-wiz] so much for "deny all"

From: Adam Jones (ajones1_at_gmail.com)
Date: 06/10/05

  • Next message: Victor Williams: "Re: [fw-wiz] Host based vs network firewall in datacenter"
    Date: Fri, 10 Jun 2005 13:50:51 -0500
    
    

    Just because they sell it does not mean you have to buy it. You can
    still do deny all to your heart's content and let the people who need
    (or think they need) the big expensive smarter-than-me firewall buy
    that.

    On 6/7/05, Tina Bird <tbird@precision-guesswork.com> wrote:
    > From the TechTarget coverage of the Gartner Security Summit this week:
    >
    > "Next generation firewalls that do deep-packet inspections from vendors like
    > Juniper Networks, Check Point and Fortinet employ a heuristics engine and
    > allow all network traffic and behavior, except those which policy says it
    > must block. Most enterprises, however, refresh their firewall purchases on a
    > three- to five-year cycle and that makes it challenging to synch new
    > features."
    >
    > *sigh*
    >
    > <http://searchwindowssecurity.techtarget.com/originalContent/0,289142,sid45_
    > gci1095755,00.html?track=NL-122&ad=518233> (site requires free registration)
    >
    > _______________________________________________
    > firewall-wizards mailing list
    > firewall-wizards@honor.icsalabs.com
    > http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    >
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: Victor Williams: "Re: [fw-wiz] Host based vs network firewall in datacenter"