Re: [Full-Disclosure] Sidewinder G2

From: Shawn McMahon (smcmahon_at_eiv.com)
Date: 11/20/03

  • Next message: Mike Fratto: "RE: [Full-Disclosure] Sidewinder G2"
    To: full-disclosure@lists.netsys.com
    Date: Thu, 20 Nov 2003 12:10:27 -0500
    
    
    

    Schmehl, Paul L wrote:
    >
    > Maybe your network policy states that, but I would prefer for single
    > point of failure devices to fail open, rather than closed. For us,
    > network availability is a higher priority than protection is. If the
    > firewall fails, I don't want the entire network down while we're waiting
    > for a vendor to fix it. I'd be surprised if most networks aren't that
    > way.

    The problem with this, as I'm sure you know (but it bears repeating for
    the peanut gallery) is that it turns any DoS on your firewall into an
    instant security hole. That escalates the severity of DoS bugs on the
    firewall, which greatly increases the need to upgrade it when they're
    found, which can increase your downtime.

    
    

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


    • application/pgp-signature attachment: stored

  • Next message: Mike Fratto: "RE: [Full-Disclosure] Sidewinder G2"

    Relevant Pages

    • RE: can ping but not browse
      ... I have stopped the firewall. ... # are safed from all (security) hazards. ... firewall/bastion host to the internet ... # internet and to an internal network, ...
      (Fedora)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.windowsxp.network_web)
    • Re: Why not use NETBEUI on Windows XP ??
      ... Trusted zones means that firewall rules will be bypassed for any or certain ... not count on netbeui being a defense for such as long as smb connectivity ... while the connection is open. ... > Microsoft Networking components on my network. ...
      (microsoft.public.win2000.networking)
    • Re: Simple Printer Sharing/Networking Question
      ... And all 3 desktop computers are running Windows XP Pro ... We have turned on sharing for the network printers (in association with this ... caused by 1) a misconfigured firewall or overlooked firewall (including ...
      (microsoft.public.windowsxp.network_web)
    • Re: Firewall for broadband connection
      ... A personal firewall application that runs on your computer will often be ... it clearly needs user intervention to apply updates. ... IP address, then VNC is a simple way to do ... I install VNC, even in a protected network, I always change the port ...
      (comp.security.firewalls)