Of course, there are still issues with this:

#1, as mentioned, he has 5 other boxes at the least that are either not
allowed to pass traffic, or are still unprotected as the free license only
covers 5 of his systems.

#2, all those systems up and running prior to this, without any protection
are most likely already compromised, so, the gnatbox does little if any
good at this point.

His best bet is at present, to build a FW box, lock it down tight and test
it, once running as he wishes, connect it to the net and put his other,
newly formatted and installed systems up behind that FW.  Anything less at
this point means he's a potential threat to everyone else on the net.


Thanks,

Ron DuFresne


On Thu, 29 Mar 2001, Steven Pierce wrote:

> 
> Mouss,
> 
> Very well stated.  I think you make a very valid point on this.  
> 
> Steven
> 
> *********** REPLY SEPARATOR  ***********
> 
> On 3/29/2001 at 15:37 mouss wrote:
> 
> >At 12:38 29/03/01 +1000, Andrew Raphael wrote:
> >>Use your slowest, smallest spare machine to run GNATBox Light from
> >>www.gnatbox.com and protect your DSL network immediately.  It's free,
> >>supports 5 clients, and needs just 2 NIC cards and a floppy drive.
> >>Then you can take your time evaluating the other suggestions on this
> >>thread.
> >
> >I will certainly not use a slow machine as a FW since that would slow my own
> >network:) The fact that that would slow an intruder is of no use to me. 
> >intruders
> >have all their time, but not me!
> >I know that tis has been advocated by many respected people, and I respect 
> >them,
> >but I don't share this opinion.
> >
> >A real example would be for a country to destroy all its highways, roads, 
> >railraods,
> >... so that if an ennemy gets in, he will find it hard to move. the problem 
> >is that not only
> >is this ineffective (if the ennemy comes in, he can afford to suffer since 
> >he is gaining
> >enough), but bad for the country itself.
> >                 the art of bore, mouss
> >
> >cheers,
> >mouss
> >
> >-
> >[To unsubscribe, send mail to [EMAIL PROTECTED] with
> >"unsubscribe firewalls" in the body of the message.]
> 
> 
> 
> -
> [To unsubscribe, send mail to [EMAIL PROTECTED] with
> "unsubscribe firewalls" in the body of the message.]
> 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
"Cutting the space budget really restores my faith in humanity.  It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation." -- Johnny Hart
        ***testing, only testing, and damn good at it too!***

OK, so you're a Ph.D.  Just don't touch anything.

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to