Security Basics mailing list archives

RE: Firewalls on NICs?


From: "Jeff Gercken" <JeffG () kizan com>
Date: Mon, 2 Jan 2006 11:54:21 -0500

 
I agree that this is better than a host based firewall running in
software and therefore defeatable.  I think 3COM announced their
solution in 2001 but the cost was just astronomical.  Otherwise I think
there would have been more interest.

A more cost effective route would be to perform the filtering at the
network level.  Most of the higher end managed switches offer per port
ACL capability.

The cheapest solution is the Dell (rebranded Netgear) 3324/3348 going
for ~$200-300 on Ebay.  The 3400 series is the current line, but for
some reason they yanked the ACL feature.  I've been using these for a
number of my small business clients and they perform well.

-Jeff


On 26 Dec 2005 22:42:10 -0000, maokly10 () hotmail com
<maokly10 () hotmail com> wrote:
Greetings:

I always wondered if there was a way to program a firewall (not an
IDS!) on a NIC,,,,Alot of benefit could be achieved, such as:

1.Ease the load on the processor.

2.An ASM based firewall is hard to crack.

3.Operating systems become a bit further from the attack

I know 3com makes something like i mentioned, but they charge like
150$+...

Could anybody comment on the subject, maybe give me some guidlines.



thanx in advance
MJ

----------------------------------------------------------------------
----- EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The 
Norwich University program offers unparalleled Infosec management 
education and the case study affords you unmatched consulting
experience.
Tailor your education to your own professional goals with degree 
customizations including Emergency Management, Business Continuity 
Planning, Computer Emergency Response Teams, and Digital
Investigations.

http://www.msia.norwich.edu/secfocus
----------------------------------------------------------------------
------



------------------------------------------------------------------------
---
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The Norwich
University program offers unparalleled Infosec management education and
the case study affords you unmatched consulting experience. 
Tailor your education to your own professional goals with degree
customizations including Emergency Management, Business Continuity
Planning, Computer Emergency Response Teams, and Digital Investigations.


http://www.msia.norwich.edu/secfocus
------------------------------------------------------------------------
----


---------------------------------------------------------------------------
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The Norwich University program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Tailor your education to your own professional goals with degree
customizations including Emergency Management, Business Continuity Planning,
Computer Emergency Response Teams, and Digital Investigations.

http://www.msia.norwich.edu/secfocus
----------------------------------------------------------------------------


Current thread: