Firewall Wizards mailing list archives

RE: Multi-media friendly Firewalls


From: "Moore, James" <James.Moore () MSFC NASA GOV>
Date: Wed, 2 Feb 2000 11:24:04 -0600

Off-topic a bit, but perhaps our moderator will allow it... I did some
"concept" work a couple of years ago on televideo conferencing via IP
networks. Security was not the thrust of this effort, but I recall a company
called "Databeam" that advertised a "secure gateway" for H.323 (& other
protocols ?). Try www.databeam.com

Jim Moore
256.461.4381

----------- PGP PUBLIC KEY FINGERPRINT ------------
1D9C 3AC3 34E6 EEDF 22B9  7886 7797 6908 048F 049B
---------------------------------------------------


-----Original Message-----
From: ark () eltex ru [SMTP:ark () eltex ru]
Sent: Tuesday, February 01, 2000 4:15 AM
To:   ReedD () HQISEC ARMY MIL
Cc:   firewall-wizards () nfr net
Subject:      Re: Multi-media friendly Firewalls

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

PIX definitely does that, though i don't know if it really does it secure
way. Anybody here familliar with PIX internals? I'd like to know.
TIS Gauntlet does RA (as most firewalls do), PNA only, no RTSP. Yoy can
install rtspd on it, though, There were some rumours about H.323 proxy
but i haven't seen it.

H.323 is damn ugly thing. RA is better (a bit) but i think there could be
some security problems too.

ReedD () HQISEC ARMY MIL said :

I have a customer that will be standing up a new group and is looking at
implementing a firewall (yea !!).  However, they do have a strong
requirement to support VTC capability (H.323, T.120) streaming video,
real-audio and the like.  Luckily there are definite end-points external
and
internal to the firewall that will be used to create the firewall rule
sets.
What I need to know are what firewalls (proxy and stateful) that are
multi-media friendly and can handle these protocols with the least
amount of
difficulty.  If anyone has any experiences good or bad using mutli-media
protocols with the Cisco PIX, Lucent Brick, Axent Raptor (NT or UNIX),
TIS
Gauntlet would be appreciated.

Don Reed


                                    _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_
|_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o
|_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBOJayEKH/mIJW9LeBAQGSSAP8DwZuFYBxl6LtWt5/eXlvRE3kLrgQsbpf
RQ9cFZQS2eq0eaXsEMpcDnOtFwtGCZS3nSVTtX5Iedxjr1MC+nWHRU62xrSwjphG
wwe31q9WqyHY8ujPqr9/c4HhM0uT9TKdaVlvRqg4DpaxsydZh/npgPqXoyOPGi1q
OYel8i10jq0=
=hMAJ
-----END PGP SIGNATURE-----



Current thread: