Re: [fw-wiz] IPv6 support in firewalls
- From: "Behm, Jeffrey L." <BehmJL@xxxxxx>
- Date: Mon, 27 Aug 2007 15:38:07 -0500
How many end users of IT can tell you what a "stateful filter set up for
outbound connections only" is, much less set it up?
On Monday, August 27, 2007 1:53 PM ArkanoiD wrote:
Well, stateful filter set up for outbound connections only isstatement.
exactly equivalent to NAT device. It is even better because
there are no moronic "UPNP" things that could be accidentally left
turned on..
On Mon, Aug 27, 2007 at 09:40:33AM -0500, Behm, Jeffrey L. wrote:
On Monday, August 27, 2007 2:31 AM, Patrick M. Hausen wrote:
Snipped out the discussion about why IPv6 should be deployed to
every device, even those "inside the firewall" and that NAT should
be killed...
First you should not rely on NAT as a security measure, anyway,
because it isn't.
For a security-conscious IT professional, this may be a true
_______________________________________________
But, for the vast majority of end users of IT, given the choice of a
Hardware NAT device vs. nothing for security, I'll pick the hardware
NAT device every time.
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
- Follow-Ups:
- Re: [fw-wiz] IPv6 support in firewalls
- From: Paul D. Robertson
- Re: [fw-wiz] IPv6 support in firewalls
- References:
- Re: [fw-wiz] ***SPAM*** Re: IPv6 support in firewalls
- From: Patrick M. Hausen
- Re: [fw-wiz] IPv6 support in firewalls
- From: Behm, Jeffrey L.
- Re: [fw-wiz] IPv6 support in firewalls
- From: ArkanoiD
- Re: [fw-wiz] ***SPAM*** Re: IPv6 support in firewalls
- Prev by Date: Re: [fw-wiz] ***SPAM*** Re: IPv6 support in firewalls
- Next by Date: Re: [fw-wiz] IPv6 support in firewalls
- Previous by thread: Re: [fw-wiz] IPv6 support in firewalls
- Next by thread: Re: [fw-wiz] IPv6 support in firewalls
- Index(es):