Search This Blog

Tuesday, August 11, 2009

firewall-wizards Digest, Vol 40, Issue 5

Send firewall-wizards mailing list submissions to
firewall-wizards@listserv.icsalabs.com

To subscribe or unsubscribe via the World Wide Web, visit
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
or, via email, send a message with subject or body 'help' to
firewall-wizards-request@listserv.icsalabs.com

You can reach the person managing the list at
firewall-wizards-owner@listserv.icsalabs.com

When replying, please edit your Subject line so it is more specific
than "Re: Contents of firewall-wizards digest..."


Today's Topics:

1. Re: Query: is there a semantic difference between
differentfirewall policy configuration terms? (Behm, Jeff)
2. Re: Query: is there a semantic difference between different
firewall policy configuration terms? (Jean-Denis Gorin)


----------------------------------------------------------------------

Message: 1
Date: Fri, 7 Aug 2009 14:03:20 -0500
From: "Behm, Jeff" <jbehm@burnsmcd.com>
Subject: Re: [fw-wiz] Query: is there a semantic difference between
differentfirewall policy configuration terms?
To: "Firewall Wizards Security Mailing List"
<firewall-wizards@listserv.icsalabs.com>
Message-ID:
<1217D5F18AEF15499BF1047D8F407D56291E13@kcm-exch-001.burnsmcd.com>
Content-Type: text/plain; charset="us-ascii"

On Friday, August 07, 2009 8:50 AM , paddy gomaith said:

> Is there a difference (semantically) between the terms:

My $.02 worth...

>Firewall Policy
An operating posture taken that dictates how you generally operate, as
in "Anything not specifically allowed is denied," vs. "Anything not
specifically blocked is allowed." I would extrapolate this to include
more than just your "firewall" device, but rather more of a "General
Security Policy," of which your Firewall Policy is a subset.


>Firewall Configuration
How the firewall is "set up" (rules, NATs, etc) to enforce the "Policy"
(see as defined above)

>Firewall Policy Configuration
Same as Firewall Configuration

>Firewall Configuration Policy
Same as Firewall Policy

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://listserv.icsalabs.com/pipermail/firewall-wizards/attachments/20090807/5cb4a46c/attachment-0001.html>

------------------------------

Message: 2
Date: Fri, 07 Aug 2009 21:22:18 +0200
From: Jean-Denis Gorin <jdgorin@computer.org>
Subject: Re: [fw-wiz] Query: is there a semantic difference between
different firewall policy configuration terms?
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.cybertrust.com>, paddy gomaith
<pgomaith@gmail.com>
Message-ID: <1249672938.4a7c7eea9b399@imp.free.fr>
Content-Type: text/plain; charset=ISO-8859-1

Hi Paddy,

> Is there a difference (semantically) between the terms:

If you are un details, there are differences
The Policy is the law.
The Configuration is what you do to enforce the law

> Firewall Policy
That describes how the firewall should be used, and what it shoud do.

> Firewall Configuration
That describes how the firewall is configured so it respect the usage rules (the
Policy).
This refer to firewall rules

> Firewall Policy Configuration

IMHO, that does not really have a meaning

> Firewall Configuration Policy
That describes how the firewall should be configured
Usually, the rules from that kind of Policy are operationnal rules: managing
admin password, who can access the firewall, from where, etc.

> Or do they all refer to the same thing (i.e a set of firewall rules)?

Hope I answer your point.

JDG


------------------------------

_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


End of firewall-wizards Digest, Vol 40, Issue 5
***********************************************

No comments: