[ale] Good windows firewall ?
Vincent Fox
vf5 at plm.gatech.edu
Sun Jun 20 22:50:15 EDT 2004
> It really makes no sense to have firewall software running on 2+
> machines if they all have access via the same connection. One firewall
> to protect them all. :)
It's called a Layered Defense.
Example:
I have an IPCop box as my home router which is also a NAT/firewall of course.
I *still* run iptables on any local Linux boxes, and on Windows I use
the XP firewall at minimum, or the CA Armor suite.
I am familiar with all too many security incidents where the dependence
on the One Big Security Device bites you in the ass. It can be a case of
a Maginot Line where you *think* you have a good firewall, but someone
finds a way around it and bingo they are inside your green network.
Or it can be a simple case of someone brings a compromised laptop
into your green. This is pretty common.
More information about the Ale
mailing list