Firewall Wizards mailing list archives

Re[2]: Worms, Air Gaps and Responsibility


From: "Marcus J. Ranum" <mjr () ranum com>
Date: Fri, 07 May 2004 09:52:34 -0400

Paul Van Noord wrote:
Is it not possible to run a script when a notebook connects to the LAN
to check for the necessary security elements. If they are not there,
either deny use of the LAN or lock the machine and add them before the
user is allowed to use the LAN?

Well, the Cisco self-protecting network stuff is basically that concept. The
idea is to partner with A/V vendors and have a plug-in to the A/V software
that interfaces with firewalls and switches to make sure the portable
machine is "up to scratch" - I think the concept is good but fairly primitive.
If it works, though, there's all kinds of potential for interesting horizontal
integration (e.g.: "call H.R. and decide if this guy is still an employee..")
That was all announced in November; I don't know how vaporous it is.

mjr. 

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: