Re: different DMZs which is better?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Monday 13 January 2003 11:05 am, Filip Sneppe wrote:

> One possible disadvantage of NAT is that it may render
> your network topology a bit less clear/intuitive for some
> people...

And some people would consider this a job security advantage... :^)

With good documentation and liberal comments in the firewall script this 
shouldn't be an issue, though, at least for the people who need to 
understand it anyway.  Just write up some notes on the setup, print out 
them and the firewalls script, and keep them in a 3-ring binder.  The 
apparent organization of everything usually looks good, and almost 
always makes return engagements much easier.  (6 months from now 
something that made perfect sense today may look completely cryptic)

j





[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux