Re: Hardware firewalls

From: Michael (mvlonden@_nospam_kabelfoon.nl)
Date: 05/21/02


From: Michael <mvlonden@_nospam_kabelfoon.nl>
Date: Tue, 21 May 2002 19:43:30 +0200

Firewalls control the traffic (only IP) between LAN interfaces using a
security policy.
Other major features of a firewall are NAT and VPN. A router on the
other hand routes or bridges traffic (IP, IPX, Appletalk, etc) between
LAN and WAN interfaces.

Some firewalls can recognize a packet with e.g.. port TCP 80, as not
being HTTP. Which means that it can work at layer 7, as a router can
only work at layer 3.

Access lists on routers are intended to control traffic, so that
unwanted protocols do not consume valuable bandwidth. Because you want
to control traffic, you basically allow everything and deny the few
thing you don't want. A security policy on a firewall is meant to block
everything and you allow things.

Michael

Eirik Seim wrote:
>
> On Tue, 21 May 2002 07:56:59 +0200, Michael wrote:
> > Routers are made to route traffic from one interface to another.
> > Optional you can filter (permit/deny) this traffic with the use of
> > access lists. A router with access lists is not a firewall.
>
> Would you please define the term 'firewall', then?
>
> - Eirik
> --
> New and exciting signature!



Relevant Pages

  • Re: 56k dial up on laptop 802.11G ?
    ... "firewall router" or some similar conglomeration. ... A router is just something that glues two networks together. ... Duz the feature in question control ... If so, it's a firewall feature. ...
    (alt.internet.wireless)
  • Re: Edge network and internet connection
    ... Please do not send email directly to this alias. ... Anything with less than 2 interfaces is not a firewall. ... connect it to internet via dsl modem or router? ... Make sure that the IP addresses on both interfaces are separate subnets. ...
    (microsoft.public.isa)
  • Re: Edge network and internet connection
    ... Please do not send email directly to this alias. ... Anything with less than 2 interfaces is not a firewall. ... connect it to internet via dsl modem or router? ... Make sure that the IP addresses on both interfaces are separate subnets. ...
    (microsoft.public.isa)
  • Re: Hardware firewalls
    ... Firewalls control the traffic between LAN interfaces using a ... Other major features of a firewall are NAT and VPN. ... LAN and WAN interfaces. ... Which means that it can work at layer 7, as a router can ...
    (comp.security.firewalls)
  • Re: Norton firewall blocking local network?
    ... >> firewall on this mechine too. ... My understanding to the router hardware ... > any PFW solution that has the almost worthless Application Control ... > application control and the rest of the crap that's in PFW solutions. ...
    (comp.security.firewalls)

Quantcast