Firewall Wizards mailing list archives
RE: Castles and Security (fwd)
From: Lance Spitzner <lance () spitzner net>
Date: Wed, 3 Jan 2001 16:08:05 -0600 (CST)
Marcus, I like your guerilla warfare analogy. The reason I posted my "Castle/Security" email is I was interested to see how people would shoot holes in it. Yours was excellent. I feel that in general, the blackhat community does use guerilla tactics. Find an easy kill, move swiftly, and disappear. I'm going to have to play with this one some more. However, I still feel castles make an excellent analogy when you want to demonstrate how defense in depth can be applied. Many organizations feel that by throwing up a firewall they are secure. Castles use defense at every layer, networks should follow a simillar concept.
Right now, we're working in an environment where it's nearly impossible to tell a "good guy" from a "bad guy". In fact, a bad guy could probably mount a credible defense for a while by merely claiming to be a good guy. That's not possible if the target definition is a bit crisper.
I've noticed more hacked websites have posts where the badguys say they just modified the index.html page to prove a point. An attempt to legitimize their actions. Just check out the hacked sites on attrition.org, makes for an interesting read. lance _______________________________________________ firewall-wizards mailing list firewall-wizards () nfr com http://www.nfr.com/mailman/listinfo/firewall-wizards
Current thread:
- Re: Castles and Security (fwd), (continued)
- Re: Castles and Security (fwd) Darren Reed (Jan 02)
- RE: Castles and Security (fwd) Jürgen Nieveler (Jan 02)
- RE: Castles and Security (fwd) twaszak (Jan 03)
- RE: Castles and Security (fwd) Marcus J. Ranum (Jan 03)
- Re: Castles and Security (fwd) Crist Clark (Jan 03)
- RE: Castles and Security (fwd) Marcus J. Ranum (Jan 03)
- Re: Castles and Security (fwd) Antonomasia (Jan 03)
- RE: Castles and Security (fwd) Stiennon,Richard (Jan 03)
- RE: Castles and Security (fwd) Security Related (Jan 03)
- RE: Castles and Security (fwd) Marcus J. Ranum (Jan 03)
- Re: Castles and Security (fwd) Crispin Cowan (Jan 03)
- RE: Castles and Security (fwd) Marcus J. Ranum (Jan 03)
- RE: Castles and Security (fwd) Lance Spitzner (Jan 03)
- Re: Castles and Security (fwd) Darren Reed (Jan 03)
- Re: Castles and Security (fwd) John McDermott (Jan 03)
- Re: Castles and Security (fwd) Darren Reed (Jan 03)
- Re: Castles and Security (fwd) M.Schubert (Jan 04)
- Re: Castles and Security (fwd) Darren Reed (Jan 03)
- Re: Castles and Security (fwd) Darren Reed (Jan 03)
- Re: Castles and Security Title Randy Grimshaw (Jan 04)
- RE: Castles and Security (fwd) daN. (Jan 03)
- RE: Castles and Security (fwd) Marcus J. Ranum (Jan 04)
- Re: Castles and Security (fwd) Neil Buckley (Jan 05)