On Mon, 2 Feb 2004, Mordechai T. Abzug wrote:
> I've often heard the argument that security and connectivity are
> inversely proportional. IMHO, the problem with it is that
> availability is supposed to be part of security. A firewall that is
> "so secure" that it breaks connectivity/availability isn't secure at
> all; it's a self-DOS.
Only if the connectivity it breaks is allowed by the security policy, and
the security policy needs to relect the business need for connectivity.
I've yet to see a business need for BotNet clients to run successfully ;)
Paul
-----------------------------------------------------------------------------
Paul D. Robertson "My statements in this message are personal opinions
proberts_at_patriot.net which may have no basis whatsoever in fact."
probertson_at_trusecure.com Director of Risk Assessment TruSecure Corporation
_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
Received on Feb 03 2004