Firewall Wizards mailing list archives
Re: Worms, Air Gaps and Responsibility
From: Frank Knobbe <frank () knobbe us>
Date: Tue, 18 May 2004 11:34:54 -0500
On Tue, 2004-05-18 at 10:02, Adam Shostack wrote:
I think the issue is insecure systems that remain insecure. You get the same behavior from backups restoring viruses. So the issue is not a firewall issue, but a network design & upgrade issue--how do you flow changes in such a way that you're not breaking things?
Adam, no question about that. I think virus outbreaks should be remedied in such a way that your internal systems are immune to it. In other words, fix it so that you are sure and not afraid of letting the virus/worm loose on the inside again, knowing that it won't cause harm anymore. It's not enough to get the worm out and keep it from coming back in. But this thread started with the idea of using "air gaps" as a measure to prevent infection. Perhaps that shows that we tend to first run to the perimeter in order to secure our networks instead of aiming for the real issue (host vulnerability). No doubt that perimeter defenses can buy you time, but it not the proper way to guarantee systems safety. Immunization has to occur on the hosts. If I could remember the phrase about curing the cause, but not the disease, I would properly place it here. :) Cheers, Frank
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- RE: Worms, Air Gaps and Responsibility, (continued)
- RE: Worms, Air Gaps and Responsibility Paul D. Robertson (May 12)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 13)
- RE: Worms, Air Gaps and Responsibility Paul D. Robertson (May 13)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 17)
- RE: Worms, Air Gaps and Responsibility Paul D. Robertson (May 17)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 17)
- RE: Worms, Air Gaps and Responsibility Frank Knobbe (May 18)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 18)
- Re: Worms, Air Gaps and Responsibility Adam Shostack (May 18)
- Re: Worms, Air Gaps and Responsibility Dana Nowell (May 18)
- Re: Worms, Air Gaps and Responsibility Frank Knobbe (May 18)
- RE: Worms, Air Gaps and Responsibility Gwendolynn ferch Elydyr (May 18)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 18)
- RE: Worms, Air Gaps and Responsibility Paul D. Robertson (May 18)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 18)
- RE: Worms, Air Gaps and Responsibility Gwendolynn ferch Elydyr (May 18)
- RE: Worms, Air Gaps and Responsibility Dana Nowell (May 19)
- RE: Worms, Air Gaps and Responsibility Gwendolynn ferch Elydyr (May 19)
- Best Practices Paul D. Robertson (May 19)
- Re: Best Practices Dana Nowell (May 21)
- Re: Best Practices Gwendolynn ferch Elydyr (May 21)
- RE: Worms, Air Gaps and Responsibility Paul D. Robertson (May 13)