Firewall Wizards mailing list archives
RE: Strange setup
From: "Daniel Linder" <dan () linder org>
Date: Fri, 27 Feb 2004 12:48:22 -0600 (CST)
mcary () badgermeter com said:
What prevents a user from changing his default route from ISA to the FW, bypassing any authentication that ISA provided?
The firewall rules themselves...? If this were my network to administer (but not reorganize), I'd restrict access directly through the fireall to only the servers that need it (ISA, e-mail, web, ftp, MS-SQL, NetBIOS, etc). (Just kidding on those last two! Please, no flames! :) Dan _______________________________________________ firewall-wizards mailing list firewall-wizards () honor icsalabs com http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Current thread:
- Strange setup franco segna (Feb 26)
- Re: Strange setup Mark Tinberg (Feb 26)
- RE: Strange setup Robert L. Wanamaker (Feb 26)
- <Possible follow-ups>
- RE: Strange setup Melson, Paul (Feb 26)
- RE: Strange setup Bill Royds (Feb 27)
- RE: Strange setup mcary (Feb 27)
- RE: Strange setup Daniel Linder (Feb 27)
- RE: Strange setup Steven A. Fletcher (Feb 27)
- Multiple small switches vs. a single big one; Granularity of control Shimon Silberschlag (Feb 29)
- RE: Strange setup Sloane, David (Feb 27)