Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Firewall Wizards: Re: Protocol inspection

Re: Protocol inspection

From: Magosányi Árpád <m4gw4s_at_gmail.com>
Date: Mon, 31 Mar 2008 18:11:55 +0200

2008/3/31, Brian Loe <knobdy_at_gmail.com>:
> On Fri, Mar 28, 2008 at 12:57 PM, Josh <usenetspamtrap_at_yahoo.com> wrote:

> I'm not an expert, on this list especially, but it seems to me that
> the firewall is the wrong place to look in regards to stopping SQL
> Injection attacks. The better place would be the coding that allows
> for such attacks.

Well, this is true for all security aspects. Firewall is not the
proper solution,
it is sort of a solution when the proper solution is unavailable. When
your company
have already bought that huge pile of crap which runs on five of your
web servers
and ten of your database server nodes, for which you do not have the
source code,
and no one has the expertise to modify it anyway, even at the vendor.
_______________________________________________
firewall-wizards mailing list
firewall-wizards_at_listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
Received on Mar 31 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]