Firewall Wizards mailing list archives

RE: Strange setup


From: "Daniel Linder" <dan () linder org>
Date: Fri, 27 Feb 2004 12:48:22 -0600 (CST)

mcary () badgermeter com said:
What prevents a user from changing his default route from ISA to the FW,
bypassing any authentication that ISA provided?

The firewall rules themselves...?  If this were my network to administer
(but not reorganize), I'd restrict access directly through the fireall to
only the servers that need it (ISA, e-mail, web, ftp, MS-SQL, NetBIOS,
etc).  (Just kidding on those last two!  Please, no flames! :)

Dan
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: