Your client probably does not need a separate firewall since separate firewall boxes 
are normally used to separate corporate networks of some kind from the Internet. But 
it would be useful to have a personal firewall like ZoneAlarm or BlackICE to monitor 
possible attacks. The problem with NT is that one can not be sure of what services are 
running on the box since the kernel is monolithic and there is no easy accessible 
documentation about what each process does. The personal firewall would log attempts 
to connect to your system and give you an idea of what risks are if you decide to add 
some of those services like ftp or web.

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Tally
Sent: Thursday, April 12, 2001 07:02
To: [EMAIL PROTECTED]
Subject: why firewall ?


hi list,

i know this must be real elementary but actually i
was asked this question by a client.

Why would i need a firewall for a NT sytem that is
not running any servers (web,ftp,telnet), does not
have any shared drive, has a strong password. Also
let's say the OS has been hardened as well.

The system is a standalone box (NT workstation) and
only is used to connect to the Internet. (single
homed)

To be frank I was at a loss to convinve him to get
a firewall (i mean a commercial firewall).
Also we are not talking of any attacks that may be
launched at the box. Please let me know as to what
safeguards would a fireall provide in this case.

thanks
[EMAIL PROTECTED]

_

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to