Firewall Wizards mailing list archives

Re: firewall configurator Was: Firewall administration.


From: "Magossa'nyi A'rpa'd" <mag () bunuel tii matav hu>
Date: Sun, 12 Oct 1997 20:39:47 +0100

[dd]

To have a full-featured firewall, you almost definitely need this when it is
finished, fwtk with the transproxy patch,

btw i don't think transproxy patch is a mandatory thing for a full-featured
firewall. Actually when i ask someone: do you _really_ need this,the answer
(usually) is "Hmm.. not a bad thing but i can't say i _need_ it" ;).
Partly agreed. Transparency is not mandatory. But if your users are
accustomed to it, it is hard to be without.

I also thought about content filtering in the way mimesweeper does. Given
the current set of conversion tools, I think that a Linux equipped with them
and a dosemu to run foreign virus scanners is a very good platform to
implement it.

btw do you know that McAfee viruscan runs on Unices?
Yes, but it is only one virus scanner.

I thinked about virus scan on a firewall.. Not so useful and too easy to
bypass (IMHO).
Agreed. I think it is too big a task to do on the firewall, it is better
done on the cache machine and/or the mailhub. It is not useful without virus
management on the desktops. It is easy to bypass, but hopefully catches
those silly word macro viruses.

---
GNU GPL: csak tiszta forrásból



Current thread: