Firewall Wizards mailing list archives

Re: Proxy 2.0 secure? (IDS)


From: tqbf () pobox com
Date: Tue, 7 Jul 1998 14:24:57 -0500 (CDT)

make your firewall do the packet reassembly, leave your IDS in passive
monitoring so that it does not become the object of an attack.

If you implemented this right (and that's not easy), you might solve the
fragmentation problem. Now solve the TCP stream reassembly problem.

-----------------------------------------------------------------------------
Thomas H. Ptacek                           SNI Labs, Network Associates, Inc.
-----------------------------------------------------------------------------
http://www.pobox.com/~tqbf       "If you're so special, why aren't you dead?"
                                        



Current thread: