Firewall Wizards mailing list archives

Re: nmap fun


From: ark () eltex ru
Date: Mon, 30 Oct 2000 15:42:09 +0300

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

Remember NAI does not ship source code anymore..  That makes things much
worse.

=?iso-8859-2?Q?Magos=E1nyi_=C1rp=E1d?= <mag () bunuel tii matav hu> said :

We are talking about a reasonably good application proxy firewall which
is defended by a poor packet filter configured in a braindead manner.
This is what NAI did with Gauntlet.

But still; if you install a Gauntlet, rip off its various GUIs, 
harden the underlying OS, use the native packet filter instead 
the one they have given to you,
configure it locally or through ssh using vi, you can get the
3rd or 4th best firewall in the market. It is magnitudes more
secure than any of the "market leader firewall"s 
(which are not even firewalls).

                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: PGP 6.5.1i

iQCVAwUBOf1soKH/mIJW9LeBAQH/bwP/WtxJpO0UcAsLi5g4veMoVdpKeRFEoLei
yH+KORpXik8mSnJH9QzcgNiLFkWqYlU/sJjmL6LQQi/YoNcnXDzISDSb13Vcw/wJ
vQI6wriH/PHFOZxKvqlw0t/GzMv/JyhJHDzlvilNH62Yag8Qi0mjAyvwNIdYHAs4
mUyuezdiCOg=
=ivEd
-----END PGP SIGNATURE-----

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: