Firewall Wizards mailing list archives

Re: AS5300 & CiscoSecure Capabilities


From: "Ryan Russell" <ryanr () sybase com>
Date: Wed, 1 Jul 1998 11:06:40 -0700

Cisco claims that you can use CiscoSecure to hand over
an abribtrary access-list to a user's dialup port based on
their username.  I haven't verified this myself, but one of
my co-workers has, and is using it this way.

I'm sure you aware of this, but remember that once they
are on that machine you permit them to, they can get wherever
that machine can get.  Hopefully, that machine is restricted
or monitored in some way.

               Ryan





Russell Ross <rross () etrade com> on 06/30/98 02:18:46 PM

Please respond to Russell Ross <rross () etrade com>

To:   firewall-wizards () nfr net
cc:    (bcc: Ryan Russell/SYBASE)
Subject:  AS5300 & CiscoSecure Capabilities




Is it possible to restrict a dialin user to a specific IP address with
either the AS5300 or CiscoSecure?  We are currently using both solutions
but I need to restrict Vendor access into the network.

Russell H. Ross
E*Trade Group, Inc.
Sr. Network Security Analyst


Received: from tunnel.sybase.com ([130.214.231.88]) by ibwest.sybase.com
(Lotus SMTP MTA v4.6.1  (569.2 2-6-1998)) with SMTP id 88256634.000CD6EF;
Tue, 30 Jun 1998 19:20:14 -0700
Received: from smtp1.sybase.com (smtp1 [130.214.220.35])
          by tunnel.sybase.com (8.8.4/8.8.4) with SMTP
       id TAA07430; Tue, 30 Jun 1998 19:17:37 -0700 (PDT)
Received: from inergen.sybase.com by smtp1.sybase.com
(4.1/SMI-4.1/SybH3.5-030896)
     id AA03589; Tue, 30 Jun 98 19:17:36 PDT
Received: from nfr.net (tower.nfr.net [208.196.145.10])
          by inergen.sybase.com (8.8.4/8.8.4) with ESMTP
       id TAA03204; Tue, 30 Jun 1998 19:18:57 -0700 (PDT)
Received: (from lists@localhost)
     by nfr.net (8.8.8/8.8.8) id RAA04743
     for firewall-wizards-outgoing; Tue, 30 Jun 1998 17:46:11 -0500 (CDT)
Received: (from fwiz@localhost)
     by nfr.net (8.8.8/8.8.8) id RAA04730
     for firewall-wizards () nfr net; Tue, 30 Jun 1998 17:45:49 -0500 (CDT)
Received: from a1ntex2.etrade.com ([205.227.194.223])
     by nfr.net (8.8.8/8.8.8) with ESMTP id QAA04191
     for <firewall-wizards () nfr net>; Tue, 30 Jun 1998 16:14:49 -0500 (CDT)
Received: by a1ntex2.etrade.com with Internet Mail Service (5.5.1960.3)
     id <N9K8T20Z>; Tue, 30 Jun 1998 17:18:49 -0400
Message-Id: <CD18798B884CD111877000805FFE1C03BD9CBF () g4ntex1 etrade com>
From: Russell Ross <rross () etrade com>
To: firewall-wizards () nfr net
Subject: AS5300 & CiscoSecure Capabilities
Date: Tue, 30 Jun 1998 17:18:46 -0400
Mime-Version: 1.0
X-Mailer: Internet Mail Service (5.5.1960.3)
Content-Type: text/plain
Sender: owner-firewall-wizards () nfr net
Precedence: bulk
Reply-To: Russell Ross <rross () etrade com>









Current thread: