[fw-wiz] How automate firewall tests



Hello Everyone,

I'm a student of university of Computer Science. I'm doing
researches on firewalls (packet filters, statefull firewalls and
application proxies) and doing some tests on netfilter/iptables with
nmap and hping. I have almost no experience using firewalls in a
business context so I have just decided to ask help in this list.
What I need is someone that could tell me which type of tests you do on
your firewalls and that you like too see automated; I mean something
more complex that a simple nmap scan, something that is possible to do
only with a deticated c software or with a crafted packet generator.
I'm interested in tests for any time of the firewalls written above.
Any help will be very appreciated. Thank you.

Strabla Ruggero
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Home Networking/Firewall problem
    ... but there's a clear distinction between host-based packet filters ... So-called "personal firewalls" are just packet filters running on the ... thinks like privilege separation and ACLs aren't even considered at all. ...
    (comp.security.firewalls)
  • Re: what should I do when....
    ... It is my opinion that firewalls are not security devices as much as ... filtering devices they still control which connections may or may not be ... firewalls are not limited to being mere packet filters. ...
    (Security-Basics)
  • RE: [fw-wiz] GIDS, Intrusion Prevention: A Firewall by Any Other Name
    ... >regular once) and packet filters. ... But that's what marketing idiots do ... Though if you look back at the firewalls mailing list archives you'll find ... they did a better job with distributed management ...
    (Firewall-Wizards)
  • Re: New to firewalls
    ... Firewalls running access lists are "ok" for basic perimiter security. ... Stateful firewalls are far superior to packet filters, ...
    (comp.security.firewalls)
  • Re: How do I remove the server header in IIS6?
    ... Firewalls will probably not ... > If one opens only a few or even one port, say 80 and 443 on a server. ... > like nmap will get a more difficult time at determing the system OS. ... nmap can be used to send a legitimate TCP 80 SYN packet ...
    (microsoft.public.inetserver.iis.security)