Re: [netfilter] Re: iptables problem

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Thu, 3 Nov 2005, Ashley M. Kirchner wrote:

R. DuFresne wrote:

Why not have one system that reaches out for the files, and brings them inside, then point the kiosks at that one system? Far easier to maintain and troubleshoot and far less FW coding.

Because I didn't code these machines. They are proprietary and third party to us.



Interesting, and that means I suspect that you have no ability to tune or config them as well? Could one put in a request the third parties config them to look at one trusted host you could setup to pull the files from?

Have they been "tested" for their security? Seems a tad risky, depending upon placement, hopefully they are in a dmz and not the soft chewy center....

Thanks,

Ron DuFresne
- -- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
        admin & senior security consultant:  sysinfo.com
                        http://sysinfo.com
Key fingerprint = 9401 4B13 B918 164C 647A  E838 B2DF AFCC 94B0 6629

...We waste time looking for the perfect lover
instead of creating the perfect love.

                -Tom Robbins <Still Life With Woodpecker>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFDatL0st+vzJSwZikRArWLAKDA/urNj4sEruwm7KU8ezInKPLpJQCeJk+R
MFr5oi+c3stQZx0mqQJgqmE=
=Z32v
-----END PGP SIGNATURE-----


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux