Re: Best security topology for FreeBSD

From: Crist J. Clark (cristjc@earthlink.net)
Date: 11/26/01


Date: Mon, 26 Nov 2001 00:03:18 -0800
From: "Crist J. Clark" <cristjc@earthlink.net>
To: G Brehm <gbbrehm@yahoo.com>

On Sat, Nov 24, 2001 at 05:38:12PM -0800, G Brehm wrote:
[snip]

> I am confused by your bias.
> You'd think if it was firewall OEM pushing one design
> it would go for your preferered, (twice the $).

There _is_ competition in the business. The market share gained by,
"We can protect all of your networks with one machine!" is more
important to firewall retailers than the possibility of selling
multiple units to a single site. Most corporations underspend on
information security. The one machine, many-interface firewall caters
to this group.

-- 
Crist J. Clark                           cjclark@alum.mit.edu
To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message


Relevant Pages

  • Re: Firewall etc
    ... hatred of any 3rd party firewalls? ... security concept which is broken already by design. ... If you ask me, I'm saying the designers of the MS firewall, ... different and builds on the overall security enhancements of the OS ...
    (microsoft.public.windows.vista.security)
  • Re: SBS not for everyone?
    ... > In the case of every network we've protected, every compromised network ... >>> installations where firewall appliances have proven to be more than ... > testing, design, implementation, and follow the trends/ideas that others ... > Customer Data, Accounting Data, Social Security Numbers, business ...
    (microsoft.public.windows.server.sbs)
  • Re: Inline firewalls vs. Inline firewalls "spaced out"
    ... You internal network should only be able to talk outwards, ... the first design. ... a third firewall has to be compromised. ... > greater security to your web boxes than the first design. ...
    (Security-Basics)
  • Re: overcome NIS
    ... >> Jan Pompe wrote: ... >> intent to design it to run WITH a firewall. ... Lets say I designed a network device that only only count packets it ...
    (comp.os.linux.security)
  • Re: Help! 1 to 1 NAT on Linksys RV082 opens up firewall!
    ... I just got off the phone with Linksys support as well and they are ... design and the other said that I was doing it wrong and needed to call ... > without defining any firewall rules to let me do so. ...
    (comp.security.firewalls)