Re: Firewalls and mail servers
From: -={Giorgio}=- (leva.md3496_at_mclink.it)
Date: 08/26/03
- Next message: Zenner: "Re: firewall rule question"
- Previous message: remove/valid: "Re: Generic Host Processes for Win32 Services ? from newbie, help !!!"
- In reply to: veez: "Re: Firewalls and mail servers"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 26 Aug 2003 19:46:18 +0200
[...]
> users access their mailbox using a webinterface, i would strongly recommend
> using encryption, be it via SSL or by using a VPN client. Never allow the
> internet direct access to the corporate LAN. You're investing in 2 firewalls
[...]
I perfectly agree with you on this point... my concern is all about
to have a machine with an open port in the corporate LAN, considering
that this web server won't even use SSL, for me it's unacceptable...
The point is that this company has many consultant out of the house
even 365 days/year... and not always they have a client with VPN
setting.
> Furthermore i would strongly recommend you invest in a firewall with an
> integrated intrusion prevention system, that way you can avoid network
[...]
Right!
I was thinking about an IDS and possibly an active IDS for prompt
FW responses... but you know management is so greedy ;)
/G
- Next message: Zenner: "Re: firewall rule question"
- Previous message: remove/valid: "Re: Generic Host Processes for Win32 Services ? from newbie, help !!!"
- In reply to: veez: "Re: Firewalls and mail servers"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]