Firewall Wizards mailing list archives

Re: Putting MS servers behind firewalls


From: Tichomir Kotek <tichomir.kotek () lynx sk>
Date: Wed, 09 Jun 2004 09:32:32 +0200

Devdas Bhagat wrote:
On 08/06/04 08:23 -0400, Paul D. Robertson wrote:
<snip>

ISA server theoretically knows enough to proxy the connections- that's
your second-best bet.  Your best bet is to move everything serious behind

Perhaps a VPN might be a better solution?

VPN wrap around RPC (klient<->server) is actually worse than "plain" approach, it is possible to
go through tunnel with any protocol, hiden for NIDS, FW etc.

tk

--
Tichomír Kotek
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: