Search This Blog

Tuesday, June 24, 2014

firewall-wizards Digest, Vol 69, Issue 1

Send firewall-wizards mailing list submissions to
firewall-wizards@listserv.icsalabs.com

To subscribe or unsubscribe via the World Wide Web, visit
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
or, via email, send a message with subject or body 'help' to
firewall-wizards-request@listserv.icsalabs.com

You can reach the person managing the list at
firewall-wizards-owner@listserv.icsalabs.com

When replying, please edit your Subject line so it is more specific
than "Re: Contents of firewall-wizards digest..."


Today's Topics:

1. Quiet (Paul D. Robertson)
2. Re: Quiet (Darden, Patrick)
3. Re: Quiet (Tracy Reed)


----------------------------------------------------------------------

Message: 1
Date: Mon, 23 Jun 2014 13:16:52 -0400
From: "Paul D. Robertson" <paul@compuwar.net>
Subject: [fw-wiz] Quiet
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.icsalabs.com>
Message-ID: <53A86104.7040100@compuwar.net>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed

It's quiet here- I'd like to stir up some discussion...

Thoughts on IPv6?
Thoughts on "Cloud Firewalls?"
Thoughts on Web Application Firewalls?

Paul


------------------------------

Message: 2
Date: Mon, 23 Jun 2014 14:43:59 -0500
From: "Darden, Patrick" <Patrick.Darden@p66.com>
Subject: Re: [fw-wiz] Quiet
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.cybertrust.com>
Message-ID:
<74825E6950ECDE449817715200CEAD2703BA327681@BRTEXMB76.phillips66.net>
Content-Type: text/plain; charset="us-ascii"

1. Have any of you used the IPv6 IPSEC equivalent yet? Tunnel or transport mode? Vendor hardware? Difficulties?

2. I've pondered a cloud based service for web acceleration/filtering. Perhaps it would use Riverbeds for bandwidth optimization via compression, dedupe, etc....? Anything like that out there?

3. If it doesn't do WAP, then it's an old fashioned firewall--and quite possibly obsolete. These days, the firewall has to encompass the whole stack (except layer 8--the user). I guess you could make specific cases like for networks that don't exchange HTTP/S traffic. But seriously, if your firewall doesn't understand the protocols it is passing, if it doesn't enforce RFCs to some extent, if it doesn't do sanity checking on bounds, and true protocol inspection... then what is it doing? :-)

--patrick darden

-----Original Message-----
From: firewall-wizards-bounces@listserv.cybertrust.com [mailto:firewall-wizards-bounces@listserv.cybertrust.com] On Behalf Of Paul D. Robertson
Sent: Monday, June 23, 2014 12:17 PM
To: Firewall Wizards Security Mailing List
Subject: [EXTERNAL][fw-wiz] Quiet

It's quiet here- I'd like to stir up some discussion...

Thoughts on IPv6?
Thoughts on "Cloud Firewalls?"
Thoughts on Web Application Firewalls?

Paul
_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


------------------------------

Message: 3
Date: Mon, 23 Jun 2014 14:34:08 -0700
From: Tracy Reed <treed@ultraviolet.org>
Subject: Re: [fw-wiz] Quiet
To: Firewall Wizards Security Mailing List
<firewall-wizards@listserv.icsalabs.com>
Message-ID: <20140623213408.GH5028@tracyreed.org>
Content-Type: text/plain; charset="us-ascii"

On Mon, Jun 23, 2014 at 10:16:52AM PDT, Paul D. Robertson spake thusly:
> Thoughts on IPv6?

It's a good thing. I can't wait to see NAT die.

> Thoughts on "Cloud Firewalls?"

I wish people would stop saying "cloud" and start saying what they actually
mean.

> Thoughts on Web Application Firewalls?

Too often they are used to enumerate badness instead of whitelist goodness.

--
Tracy Reed
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <https://listserv.icsalabs.com/pipermail/firewall-wizards/attachments/20140623/4e5f7f56/attachment-0001.pgp>

------------------------------

_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


End of firewall-wizards Digest, Vol 69, Issue 1
***********************************************

No comments: