Girish Venkatachalam <girishvenkatacha...@...> writes:
> There is no need for squid to run on a multihomed host.

Multihomed is not a synonym for multiple network interfaces. It is possible to 
have multiple network cards and not be multihomed and it is also possible to 
have a single network card and be multihomed.

> Only routers/firewalls need to be on a multi network card machine.
> 
> Even firewalls can work with one network card. ;)

And so can routers. Routing is not necessarily between physical
networks, it could be between logical networks sharing a physical
medium.

> In the case of a firewall you only need to block packets before they
> are sent out using the router/MODEM.

[example information deleted]

I dont know about the point of a firewall that does not sit between two 
physical networks (i.e. firewall between logical networks that share a 
physical medium). Since the physical medium is shared, there is no isolation 
between the input and output sides of the firewall and hence it may be 
possible to defeat the firewall. It is somewhat like having a walk through 
metal detector but not requiring everyone to walk through it by providing a 
side path.

Sriram

_______________________________________________
ILUGC Mailing List:
http://www.ae.iitm.ac.in/mailman/listinfo/ilugc

Reply via email to