Search This Blog

Thursday, July 11, 2013

firewall-wizards Digest, Vol 66, Issue 7

Send firewall-wizards mailing list submissions to
firewall-wizards@listserv.icsalabs.com

To subscribe or unsubscribe via the World Wide Web, visit
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
or, via email, send a message with subject or body 'help' to
firewall-wizards-request@listserv.icsalabs.com

You can reach the person managing the list at
firewall-wizards-owner@listserv.icsalabs.com

When replying, please edit your Subject line so it is more specific
than "Re: Contents of firewall-wizards digest..."


Today's Topics:

1. Re: DISA eliminating firewalls (James Wright)


----------------------------------------------------------------------

Message: 1
Date: Mon, 8 Jul 2013 16:14:15 -0400
From: James Wright <jamfwright@gmail.com>
Subject: Re: [fw-wiz] DISA eliminating firewalls
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.icsalabs.com>
Cc: firewall-wizards@listserv.cybertrust.com
Message-ID:
<CAKpcs8TWe5htFipdyJiprLJybQJqi9YuoeyTMtKgYOuWSajWCw@mail.gmail.com>
Content-Type: text/plain; charset="windows-1252"

Agreed, I also do not see them going away. While BYOD is becoming a common
practice, so is network segregation, such as separate wifi networks
dedicated to personal devices. Just because they need connectivity for
their device does not necessarily mean that it has to be direct
connectivity to internal resources and it does not mean that every
employee/user needs that level of connectivity. Vendors are getting better
with the device VPN poducts as a method of internal access, which can
include an endpoint compliance scan. This can ensure the device meets
local policies (like not being on the cell or other networks too, having AV
(for what it's worth), or other software/features). Often times the VPN
options include turning off split-tunneling (forcing all data traffic
through the VPN tunnel), and other proxy type options.


Regards,
James



On Sun, Jul 7, 2013 at 12:46 AM, kent <kent@songbird.com> wrote:

> On 07/06/2013 08:55 AM, Crispin Cowan wrote:
> > ?What will happen when firewalls go away?? is a very good question, i
> > don?t have that answer. I simply assert that firewalls will go away,
> > because they will become irrelevant. They are already barely relevant
> > because of mobile devices. The threatscape is ignoring your firewall and
> > walking straight through the front door attached to each individual
> > worker in the form of a smart phone or a tablet. Not only do the users
> > use them any way they want while away from the office, most of these
> > devices are dual-homed to your network and a cellular network plumped
> > right to the internet.
> >
> > It is neither my choice nor my wish that firewalls will go away, merely
> > an inevitable consequence of pervasive mobile computing in the
> enterprise.
>
> Firewalls will be with us for a long time to come. Old threats don't
> become irrelevant just because there are powerful new threats.
>
> Kent
> _______________________________________________
> firewall-wizards mailing list
> firewall-wizards@listserv.icsalabs.com
> https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://listserv.icsalabs.com/pipermail/firewall-wizards/attachments/20130708/512cc0f6/attachment-0001.html>

------------------------------

_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


End of firewall-wizards Digest, Vol 66, Issue 7
***********************************************

No comments: