Firewall Wizards mailing list archives

Re: Castles and Security (fwd)


From: George Capehart <capegeo () opengroup org>
Date: Fri, 05 Jan 2001 19:36:05 -0500

Ryan Russell wrote:

On Fri, 5 Jan 2001, George Capehart wrote:

To me, the most interesting aspect of the thread has been the
acknowledgment (once again) that it is impossible to defend against
truly determined adversaries but that Defense in depth is a Good Thing
(TM) and is usually necessary.  Seems to me that we're back to the
economics of security . . . defenders rarely spend more to defend a
target than it is worth to them and attackers spend as much on an attack
as they're willing to pay.

That's the whole thing about the Internet.... cost of attack has dropped
to near zero.. 

Some attacks against some targets, yes . . . ergo, the need to reread
Sun Tzu and Schneier . . . either we're wasting money on preventive
measures that should/could be used differently or we don't really know
our enemy.  IMHO, it's a good time to start thinking "outside of the
box."

at least if you don't believe that you'll get caught.

Yep!  That's part of the problem, too.  ;->   And then, for many,
getting caught makes them martyrs . . . Doh!  I won't take that any
further . . .


                                                Ryan

gwc
--
George W. Capehart                            phone:  +1 (704) 277-4561
                                              fax:    +1 (704) 853-2624

"I'd rather have a bottle in front of me than a frontal lobotomy."
Anonymous

_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: