On Thu, Apr 18, 2002 at 09:42:06PM -0700, David Smead wrote:
> That's why you run those services in a DMZ.
> 

And what do you do when a security vulnerability arises in your firewall
implementation?  Or when an attacker is able to hijack a web browsing
session by one of your internal users?

The idea that firewalls are the panacea of network security is very
dangerous.  No network should be trusted, and firewalling off your
little subnet is not going to change that.

It's been said many times before: the only secure computer is one that's
not plugged in.

noah

-- 
 _______________________________________________________
| Web: http://web.morgul.net/~frodo/
| PGP Public Key: http://web.morgul.net/~frodo/mail.html 

Attachment: pgpXzsTlaOJZS.pgp
Description: PGP signature

Reply via email to