On 19/08/2012 5:58 a.m., Eliezer Croitoru wrote:
<SNIP>

I wasn't sure that I got it right but it seems like my logic was right after all.

But if anyone do use firewall + intercept proxy he will most likely will manage the proxy acls to match the local security policy else then the firewall.

Regards,
Eliezer


Sensible admin would yes. But as often thrown at me, not everybody has control over both firewall and proxy rules. That goes for both major ISP with separate FW and admin groups (some chance of gettign teh aperwork through) and home users with CPE device firewall and separate proxy (little chance of figuring out the CPE firewall magiks).

Amos

Reply via email to