Firewall Wizards mailing list archives

Re: [ISN] New Defence Computer Keeps Hackers Out and Secret (fwd)


From: ark () eltex ru
Date: Mon, 19 Oct 1998 17:45:40 +0400

-----BEGIN PGP SIGNED MESSAGE-----

nuqneH,

Hmm and how does classified side make requests? Or it does not?
So what protocols can it use?

Should be not so hard to implement, although..

Thanks for the information; the original message was too unclear about
that..

Rick Murphy <rmurphy () mitretek org> said :

At 01:39 PM 10/16/98 +0400, ark () eltex ru wrote:
what the hell is that thing if _not_ firewall??
Does anybody know?

It's not a firewall; it's a unidirectional data transfer device.
It's intended to be put between classified and unclassified networks
so that information can flow up toward the classified network but
nothing can leak back down. 

Vision Abell have built an x-windows proxy capability using this box.
Writing proxies is difficult because you can't get any feeback
(acknowledgements, for example) from the classified side back to the
unclassified side because you have a write-only link. Your proxy has
to mimic the behavior of the classified side and can't tell if the
classified side is even listening.
      -Rick


                                     _     _  _  _  _      _  _
 {::} {::} {::}  CU in Hell          _| o |_ | | _|| |   / _||_|   |_ |_ |_
 (##) (##) (##)        /Arkan#iD    |_  o  _||_| _||_| /   _|  | o |_||_||_|
 [||] [||] [||]            Do i believe in Bible? Hell,man,i've seen one!

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3i
Charset: noconv

iQCVAwUBNitCgqH/mIJW9LeBAQFU5QP9Eqrf5zZsxprb+oYEMd6Po35g8iHKx0JL
ShC6h30+laBlr+YAgI7eTJyM6qPNdIv+g8meOeKBPNp3e4Xott5m3hHsOZ74+/zD
7G77AIawJlpJ5kVfmttNr/g/PITOA82B9kViVEI33FF4xrjTsyxmSOy/Tm56YfLD
pT0+fObVi6Y=
=7Vxe
-----END PGP SIGNATURE-----



Current thread: