Firewall Wizards mailing list archives

Re: How automate firewall tests


From: ArkanoiD <ark () eltex net>
Date: Tue, 22 Aug 2006 16:48:07 +0400

nuqneH,

Well, SIP is much much better compared to h.323 ;-)

On Mon, Aug 21, 2006 at 06:25:50PM +0200, Jean-Denis Gorin wrote:
On Mon, 21 ao?t 2006 16:23
Chris Byrd wrote:

Wonderfully put as always, Marcus.  I guess the question then
is, what is the solution?

The solution is easy to find: that's designing protocol with security in mind!

We are doomed by poor protocol design from the beginning of the Internet
history. And it seems that we are the only people to see that.
The present is worst than the past (SIP and VoIP for example) and I don't expect
the future to be better...

Defense-in-depth, compartmentalization, and diligent patching
all help, but surely there has got to be a way to build a
better mouse trap - err - firewall.

Too late... the *bad people* are becoming business oriented, they make money, a
lot, from phishing, troyan horses, botnet, etc. It's not anymore possible to
cope with that and the stubbornness of users, developpers and management!

JDG.
_______________________________________________
firewall-wizards mailing list
firewall-wizards () listserv icsalabs com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
_______________________________________________
firewall-wizards mailing list
firewall-wizards () listserv icsalabs com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: