
Firewall Wizards mailing list archives
RE: Air gap technologies
From: "daN." <dan () nesmail com>
Date: Thu, 25 Jan 2001 12:25:26 -0800
You've added another layer of obfuscation but nothing more...all the attacker would have to do is emulate the software or not cause the Security Heartbeat to crash and you are back where you started. Unfortunately there is no golden egg to security. If some packets can get it, someone will find a way of getting something unwanted onto your network. All you can do is put up more firewalls better intrusion detection and stay vigilant.
daN.
However, I believe such an air gap (literally!) is possible. Imagine a proxy combo connected via serial cable (for example). Imagine the serial cable A connecting the internal proxy and 'a mystery box', and cable B connection the mystery device and the external proxy. The external proxy, in normal working condition, sends a heartbeat to the device, which is nothing else than a RELAY kept alive by the heartbeat. Should the proxy get compromised, and normal routines providing security (and the heartbeat) are terminated, then the missing heartbeat would cause the device to actually fail shut (in other words, cause the relay to open). And there you have it! An air gap between the relay contacts! You internal network is safe. Resetting the system would require operator intervention where the operator has to push and hold a button on the device until the proxy has been restarted and the heartbeat is beating again. Doesn't this sound like a nice, little weekend project? ;) Regards, Frank
_______________________________________________ firewall-wizards mailing list firewall-wizards () nfr com http://www.nfr.com/mailman/listinfo/firewall-wizards
Current thread:
- Re: Air gap technologies, (continued)
- Re: Air gap technologies Aleph One (Jan 25)
- RE: Air gap technologies Elad Baron (Jan 24)
- Re: Air gap technologies Eilon Gishri (Jan 24)
- RE: Air gap technologies Marcus J. Ranum (Jan 25)
- Re: Air gap technologies Aleph One (Jan 25)
- RE: Re: Air gap technologies Predrag Zivic (Jan 24)
- RE: Air gap technologies Bill Stout (Jan 25)
- RE: Air gap technologies Elad Baron (Jan 25)
- Re: Air gap technologies Avi Rubin (Jan 25)
- RE: Air gap technologies Frank Knobbe (Jan 25)
- RE: Air gap technologies daN. (Jan 25)
- RE: Air gap technologies Elad Baron (Jan 25)
- Re: Air gap technologies David Wagner (Jan 25)
- Re: Air gap technologies Adam Shostack (Jan 26)
- Re: Air gap technologies Aleph One (Jan 25)
- Re: Air gap technologies David Wagner (Jan 25)
- RE: Air gap technologies Bill_Royds (Jan 25)
- RE: Air gap technologies Elad Baron (Jan 25)
- Re: Air gap technologies Aleph One (Jan 25)
- Re: Air gap technologies Aleph One (Jan 25)
- Re: Air gap technologies Aleph One (Jan 25)