Firewall Wizards mailing list archives

Re: GIDS, Intrusion Prevention: A Firewall by Any Other Name


From: "Marcus J. Ranum" <mjr () ranum com>
Date: Mon, 12 Aug 2002 19:54:43 -0400

Ryan Russell wrote:
I think a more interesting question is: if GIDS is the new "firewall",
then why did firewalls running on top end PCs max at 100mbps or so with
just a few dozen rules and terribly simply filtering capabilities... 

Because they're really really really badly written.

There may be other reasons but "crappy code" is #1.

mjr.
---
Marcus J. Ranum                         http://www.ranum.com
Computer and Communications Security    mjr () ranum com

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: