Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Firewalls
[Top] [All Lists]

RE: Should FW have DNS name?

Subject: RE: Should FW have DNS name?
Date: Wed, 14 Jun 2006 15:06:54 -0700 (PDT)
... ciao:

on "6-14-2006" "Craig Wright" writ:

: argument of dogma, a religious ideology and has little if nothing to do
: with fact.

    let me put it this way.  i have a hunch, some of this readership
interested in the application of 'firewalls' in production environments.
what you define as dogma et al, might in fact be, experience based
opinion.


: No person commenting has completed a quantitative risk study
: No tests have been done either way by the people commenting
: it is pure opinion
: I have done such a study in the past

    two things:  first, you make some assumptions, i'm not sure you can
'factually' justify as viable.  secondly, since when is 'pure opinion'
automaticlly divorced from the reality of a situation.


: the firewall consists primarily of a gateway.
: spoken of as a solitary host and not a series of devices

    a lot of computing tasks are repetitive.  so, the distinction you
make here, a moot point.


: either be a complete mapping of all the gateways or a hole

    i have little confidence that an xor situation


: I know most of the people on the list are not academics, mathematicians
: What does matter is the configuration and maintenance of the firewall.

    some time ago, i watched a 'university of washington' computer
series.  within that, the question of academic vis-a-vis practical
training was raised.  it suggested the academic less impressive than
might have been assumed.   as you said, "What does matter ...".


: hiding the firewall makes a single iota of difference
: security by obscurity is no security at all

    and once again:

    "a firewall's location implicit in any given topology"

    so, the question of 'hiding' a firewall, an academic , rather than,
practical question.  in other words, it's like -1^1/2 ...


-- 
... i'm a man, but i can change,
    if i have to , i guess ...

<Prev in Thread] Current Thread [Next in Thread>