Great Circle Associates Firewalls
(January 1998)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: SNI revised -- (was: Fraudulent SA's solved)
From: Randy Grimshaw <rgrimsha @ mailbox . syr . edu>
Date: Fri, 16 Jan 1998 15:36:24 -0500 (EST)
To: daemond @ ibm . net
Cc: firewalls @ GreatCircle . COM
In-reply-to: <Pine . NEB . 3 . 96 . 980116000556 . 18073A-100000 @ master . ibmcyrix . org>

Geoff:
  You mentioned that they already have a cicso. It is probably already in
a position to offer some filtering and would reduce your equipment list if
you could be more specific about it's location in your map.
  In addition, You have not provided any detail about the specific
policies that you would implement at the filters. Such as which ports you
would block from outside traffic and why. Provide the policy and then
possibly the technique used to enforce it.


<><Randall Grimshaw, Network Programmer, Syracuse University, 315-443-5779



Follow-Ups:
References:
Indexed By Date Previous: RE: FW-1 v3.0 on NTv4.0 (with SP3 and FW-1 patches)
From: Emmanuel Tychon <manu @ acm . org>
Next: Packet Filtering suggestions?
From: Martin <marty @ outputservices . com>
Indexed By Thread Previous: SNI revised -- (was: Fraudulent SA's solved)
From: daemond @ ibm . net
Next: Re: SNI revised -- (was: Fraudulent SA's solved)
From: daemond @ ibm . net

Google
 
Search Internet Search www.greatcircle.com