There is a 'security through obscurity' factor.  If few people know of the
details of your home-grown apps then few can mount a specific attack on
them.  Mass scanners will probably be able to detect the passage through the
firewall but if your home-grown app resists the standard follow-on probes
then they are reasonably secure.
 
Thanks-
-Craig

-----Original Message-----
From: Ivan Fox [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, October 20, 1999 11:00 PM
To: Firewall-Wizards; [EMAIL PROTECTED]
Subject: vulnerability of non-standard ports


We may need to open a port or two for "home-grown" applications, e.g.
tcp-1234, tcp-2345, on a Checkpoint Firewall-1 v4.0.  Would it cause any
security concerns?  Any comments/suggestions are greatly appreciated.
 
Thanks,
 
Ivan.
 

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to