Firewall Wizards mailing list archives

RE: Gnat Box: any comments on how good it is?


From: "Frank W. Keeney" <FKeeney () hsa com>
Date: Wed, 17 Mar 1999 17:09:02 -0800

Have you tried any nmap fragmented stealth scans against this box?


        ----------
        From:  Yakov Kravets [SMTP:ygk () nb com]
        Sent:  Monday, March 15, 1999 1:58 PM
        To:  Chris Crozier
        Cc:  'Firewall-wizards'
        Subject:  Re: Gnat Box: any comments on how good it is?


        We've purchased GNATBox for internal use to replace Cisco PIX.
Basicaly
        it's a locked bsd-based box that does SPF. Without source sode
it's hard
        to verify kernel security but we did a satan and ISS scan
against it and
        it didn't show any problems. I still feel a bit freaky to put it
on the
        perimeter. However it does a good job firewalling our vendor
connections.
        One feature that I realy like is Stealth Mode. The bigest issue
for us is
        



Current thread: