On Thu, Apr 18, 2002 at 09:42:06PM -0700, David Smead wrote: > That's why you run those services in a DMZ. >
And what do you do when a security vulnerability arises in your firewall implementation? Or when an attacker is able to hijack a web browsing session by one of your internal users? The idea that firewalls are the panacea of network security is very dangerous. No network should be trusted, and firewalling off your little subnet is not going to change that. It's been said many times before: the only secure computer is one that's not plugged in. noah -- _______________________________________________________ | Web: http://web.morgul.net/~frodo/ | PGP Public Key: http://web.morgul.net/~frodo/mail.html
pgpXzsTlaOJZS.pgp
Description: PGP signature