Full Disclosure mailing list archives
Re: Firewall solution for Windows 2003 Server
From: Irwan Hadi <irwanhadi () phxby com>
Date: Sat, 24 Apr 2004 16:42:05 -0600
On Sat, Apr 24, 2004 at 09:48:01PM +0100, Lee wrote:
Are you suggesting that the win2003 server will be the point of contact for the Internet? is this a wise choice or just a product of your setup? I dont like application layer firewalls, they fill me with dread, yes the displays are nice , but that doesnt mean it cant be acheived elsewhere. I would prefer to point you in the direction of Smoothwall, and IPCOP (both are free) they run on small Pentium boxes , seperate to the win2003 server and offer excellent protection and performance. You can even just setup a nice FreeBSD box with simple ipchains packet filtering if needs be, but those two suggested would be a nice set in the right direction. Any ideas on amounts you have to spend? that obviously sways a decision somewhat, but I still like to stay away from desktop application layer firewalls.
It depends on your situation. If you have a dedicated data center just for the servers only, with its own router spiggot and its own subnet, yes, smoothwall will work, PIX firewall will work, Netscreen will work, all other firewall appliances will work just fine. But if you don't have that kind of luxury, for example, you are on a campus network, where everything is open, and sometimes you (as a department) does not have its own router spiggot, or even its own subnet, then you are dependent on a host based firewall solution. Yes, you can still use firewall appliances, and setup a NAT, but if you only maintains several servers, I don't think it worth the effort of setuping a NAT, except making things much more complicated. Besides, all of your clients are outside of the NAT anyway, so you need to make exception for every of your client then. _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Firewall solution for Windows 2003 Server Ondrej Krajicek (Apr 24)
- Re: Firewall solution for Windows 2003 Server Irwan Hadi (Apr 24)
- Re: Firewall solution for Windows 2003 Server Lee (Apr 24)
- Re: Firewall solution for Windows 2003 Server Irwan Hadi (Apr 24)
- Re: Firewall solution for Windows 2003 Server Ondrej Krajicek (Apr 25)
- Re: Firewall solution for Windows 2003 Server KF (lists) (Apr 24)
- RE: Firewall solution for Windows 2003 Server Chris Scott (Apr 25)
- Re: Firewall solution for Windows 2003 Server Lee (Apr 24)
- Re: Firewall solution for Windows 2003 Server Niek Baakman (Apr 24)
- Re: Firewall solution for Windows 2003 Server Asenchi (Apr 27)
- Re: Firewall solution for Windows 2003 Server Ondrej Krajicek (Apr 28)
- Re: Firewall solution for Windows 2003 Server Irwan Hadi (Apr 24)