Re: Misconceptions

From: Matt Curtin (cmcurtin@interhack.net)
Date: 01/13/03


From: Matt Curtin <cmcurtin@interhack.net>
Date: 13 Jan 2003 12:40:44 -0500


"JR" <notlikely@nowhere.com> writes:

> Routers are NOT firewalls.

Not necessarily correct.

> Firewalls implement security policies or rules and work closely with
> routers or routing functions. Firewalls either allow or deny packets
> based on the implemented rules.

This is correct. Any networking gear that enforces network policy can
be a firewall, or can be a contributor to a group of devices that is
collectively a firewall.

http://www.interhack.net/pubs/fwfaq/

-- 
Matt Curtin, CISSP, IAM, INTP.  Keywords: Lisp, Unix, Internet, INFOSEC.
Founder, Interhack Corporation +1 614 545 HACK http://web.interhack.com/
Author of /Developing Trust: Online Privacy and Security/ (Apress, 2001)


Relevant Pages

  • Re: Misconceptions
    ... > True routers route traffic much like the old railroad turntables ... Firewalls implement security policies or rules ... > handled by anti-virus programs, which should be on the ... > A NIDS is just that. ...
    (comp.security.firewalls)
  • Re: Misconceptions
    ... >> NAT can be implemented on many routers, but only on stub network (the ... usually a private/office network) routers. ... >> Routers are NOT firewalls. ... >> A NIDS is just that. ...
    (comp.security.firewalls)
  • Re: Do I really need firewall? A newbies question
    ... their own firewalls and you have the major ports blocked for the IPs ... you have assigned to your computers why would there be a reason to put ... router firewalls (on routers that I can afford lol) because it can lead ... I think this leads back to the age-old debate of which is better - ...
    (comp.security.firewalls)
  • Re: EIGRP or OSPF over WAN
    ... routing protocols EIGRP and OSPF so that 2 routers on different subnets ... LAN A - 172.16.116.0/22 and LAN B 172.16.120.0/22 and they ... the firewalls and these two networks are connected but the routers do ... best to use eBGP for going through firewalls and hoping across to subnets when interfaces of each end routers are on different subnets. ...
    (comp.dcom.sys.cisco)
  • Re: Misconceptions
    ... >> Routers are NOT firewalls. ... > Not necessarily correct. ... >> routers or routing functions. ... Any networking gear that enforces network policy can ...
    (comp.security.firewalls)