Re: Firewall definition

From: Lassi Hippeläinen (lassi.hippelainen_at_welho.compromised.invalid)
Date: 12/25/03

  • Next message: Ronaldo Vasconcellos: "Re: Security through wide system use?"
    Date: Thu, 25 Dec 2003 10:23:46 +0200
    
    

    Stuart Halliday wrote:
    >
    > Is a NAT Router technically a Firewall?

    No.

    > A lot of Router Manufacturers seem to list NAT as a Firewall feature
    > when selling ADSL/Cable Routers.

    All ADSL/Cable routers that I can think of have both a firewall and a
    NAT. Two things in one box.
     
    > I say it's a byproduct of how NAT works rather than really a Firewall.

    In real products it is a real feature, not a NAT byproduct. Usually it
    is printed on the box in large friendly letters: NAT+Firewall.
     
    > I say to be a Firewall means its must actively probe packets, block
    > suspicious ones and alert the user.

    A firewall does many other things, e.g. protects against TCP SYN
    flooding, Smurf, etc., that a NAT can't handle.
     
    > A colleague says just a Router with NAT is a Firewall.

    Bull***.
     
    > Who's right? :-)

    -- Lassi


  • Next message: Ronaldo Vasconcellos: "Re: Security through wide system use?"