Re: Linksys router as Firewall

From: Robert de Brus (de_brus_at_h)
Date: 07/18/03


Date: Fri, 18 Jul 2003 19:10:15 +1000

X-No-Archive: Yes

In news:rgcfhvkbgqeeo4k3oaiaf6sfchoe2tt54s@4ax.com,
IOStorm <noemail@noemail.net> typed
|| On Thu, 17 Jul 2003 12:39:09 GMT, Leythos <void@nowhere.com> wrote:
||
||| In article <iklchvcvtqf2a378255jvdcovtn5bri3fp@4ax.com>,
||| noemail@noemail.net says...
|||| On Tue, 15 Jul 2003 02:50:23 GMT, "mhicaoidh"
|||| <mhic_aoidh@hotNïXmailSPäM.com> wrote:
||||
||||| Taking a moment's reflection, IOStorm mused:
||||||
|||||| You might be confused about the definition of the term firewall.
|||||
||||| In a loose definition, I suppose you could call NAT a firewall.
||||| However, the firewall effect is a by-product of how a NAT router
||||| works. Routers are not anywhere near firewalls in terms of being
||||| able to control specific packets and ports. If in response to an
||||| out-bound packet, the router will let anything and everything
||||| through. You can play a bit with Port Forwarding, Triggering,
||||| and the like ... but a router alone is still not a firewall by
||||| any industry standard.
||||
|||| A firewall is a device or software between the local system and the
|||| internet, period.
|||
||| I can see that you've never worked in a position that required any
||| knowledge of security. A firewall is defined as follows:
||
|| I can see you have never given the slightest bit of thought to the
|| actual meaning and history of the term. A firewall is a device or
|| software between the local system and the internet, period.

ahem. You mentioned the history. Do you have your own theory on this?

The term firewall comes from the automotive industry. It's built into the
car between the engine bay and the driver's compartment to stop the driver
getting burned in the case of an engine fire.

Your definition could mean the dashboard, or the steering wheel, of the pack
of smokes *on* the dashboard, simply because these are things that are
between the driver and the engine bay.

Clearly this is a ridiculous definition.

A firewall *does* sit between the local system and the internet, but to what
ends? It actually has a job, to protect the local system from anything on
the internet having unsolicited access to that local system.

||
|| As time goes by, more and more features and concepts are integrated
|| into the concept. But they are *processes* for implementing a
|| firewall and controlling the traffic, not the definition of a
|| firewall.

Everything evolves, as I'm sure you will soon, but the firewall already had
a job to do, that's *why* it was invented. It's simply the means by which
this job is *done* that has evolved, not the concept.

---
Message has been scanned and is, to the best of my knowledge, Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.501 / Virus Database: 299 - Release Date: 17/07/2003


Relevant Pages

  • Re: 3 LAN, 2 WAN - 2 LAN use 1 WAN, last LAN uses other WAN
    ... Internet over different paths after that. ... With a single LAN Router for all the segments, ... Then each "business" uses the Firewall they are supposed to use for the ...
    (microsoft.public.windows.server.networking)
  • Re: AdAware, SpyBot S &D, etc. + leave PC connected to Internet
    ... >It will be a while I get the router and do that. ... >> labelling on the box to be sure it has firewall features. ... name, like Disconnect from Internet, and click Finish. ... generally talking only about "critical patches" that affect security. ...
    (comp.security.firewalls)
  • Re: Networking problems with router between 2 p.c.s
    ... >> router for internet access. ... >> disable the internet connection firewall in the LAN ... isn't suitable for use on a local area network. ...
    (microsoft.public.windowsxp.network_web)
  • Re: Is this a wise configuration?
    ... A have a single DSL connection to the internet at my house. ... connection goes through a router, ... With this many "test" servers running, however, there are many ... Generally referred to as "DMZ" when you search for firewall info ...
    (comp.os.linux.networking)
  • Re: MAJOR Hacking
    ... > efforts with router, personal firewalls, etc. Brand new computer ... > (AIM, internet expplorer, svchost.exe etc) accessing the internet ... > server whose IP seems to be masked to my firewall logs. ... Kerio Personal Firewall ...
    (microsoft.public.security)

Quantcast