Firewall Wizards mailing list archives
Re: Proxy 2.0 secure? (IDS)
From: tqbf () pobox com
Date: Tue, 7 Jul 1998 14:24:57 -0500 (CDT)
make your firewall do the packet reassembly, leave your IDS in passive monitoring so that it does not become the object of an attack.
If you implemented this right (and that's not easy), you might solve the fragmentation problem. Now solve the TCP stream reassembly problem. ----------------------------------------------------------------------------- Thomas H. Ptacek SNI Labs, Network Associates, Inc. ----------------------------------------------------------------------------- http://www.pobox.com/~tqbf "If you're so special, why aren't you dead?"
Current thread:
- Re: Proxy 2.0 secure? (IDS) Kjell Wooding (Jul 02)
- Re: Proxy 2.0 secure? (IDS) David Lang (Jul 07)
- Re: Proxy 2.0 secure? (IDS) tqbf (Jul 07)
- <Possible follow-ups>
- Re: Proxy 2.0 secure? (IDS) Ryan Russell (Jul 02)
- Re: Proxy 2.0 secure? (IDS) tqbf (Jul 07)
- RE: Proxy 2.0 secure? (IDS) ICMan (Jul 03)
- Re: Proxy 2.0 secure? (IDS) David Lang (Jul 07)