I believe in smart terminal. Nothing there suggest you should not run your firewall or any other filtering software on your end-terminal.
End-machine are vulnerable? Then fixed the end-machine. It isnt rocket science.
-James Seng
Eric Rescorla wrote:
James Seng <jseng@pobox.org.sg> writes:
Why should the users be limited to what IT managers decide is good or bad?
Internet is build on dumb network, smart terminal. End-users are suppose to be able to put up their own services, not just running some apps. This has been the Internet principles and have serves us well so far.
No large production network can run this way. The end machines are simply too vulnerable. Without firewally and service restriction,
you'll have your entire network compromised very quickly.
-Ekr