Security Basics mailing list archives

Re: Firewall and DMZ topology


From: "Steve Bremer" <steveb () nebcoinc com>
Date: Tue, 10 Jun 2003 13:37:46 -0500

Under what conditions would these firewalls be configured any 
differently from a vulnerability-assessment view point?  i.e., if
someone was able to crack the outer firewall, is it not likely they
would crack the inner firewall as well?

Not necessarily.  If different types of firewalls are used for each, the 
chance of both being compromised has been significantly reduced.   
However, a poorly implemented filtering policy applied to both 
firewalls could still allow unwanted traffic *through* them.

Steve Bremer
NEBCO, Inc.
System & Security Administrator

---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
     
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
          
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------


Current thread: