Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- From: ArkanoiD <ark@xxxxxxxxx>
- Date: Sat, 1 Dec 2007 03:54:57 +0300
I was pushed several years ago into implementing the
"universal heuristic proxy" in openfwtk - like something that
gets diverted socket (from packet filter or socks)
and starts proper application proxy
justifying which one to run using port number and protocol
pattern heuristics. I felt it is not a good idea - cannot
really figure out why, but i just felt that way, so i stick
with default port number binding as usual. Maybe i am wrong.
Seems that others bumped into same idea, no surprise as it
is pretty obvious. Must be almost the only way to handle p2p
properly if you need it for some reason.
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
- References:
- Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- From: Jim Seymour
- Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- Prev by Date: Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- Next by Date: Re: [fw-wiz] First there was Personal Firewall Day...
- Previous by thread: Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- Next by thread: Re: [fw-wiz] Dark Reading: Firewalls Ready for Evolutionary Shift
- Index(es):