Firewall Wizards mailing list archives

RE: Using SSL accelerators in firewalls


From: "Dawes, Rogan (ZA - Johannesburg)" <rdawes () deloitte co za>
Date: Wed, 17 Jul 2002 16:30:16 +0200

It's also helpful for the company to be sure that there are as few
opportunities as possible for even the employees to compromise security.

"And lead us not into temptation" . . .

As I see it, the holy grail of the banks should be to ensure that their
client's authentication credentials are never exposed to ANY of their
employees, to prevent the employees from attempting any fraud through
masquerading as the client.

I say holy grail, because there will almost always be opportunities, but one
should try to eliminate them wherever possible.

Rogan

-----Original Message-----
From: Paul Robertson [mailto:proberts () patriot net]
Sent: 17 July 2002 03:47
To: Darren Reed
Cc: firewall-wizards () honor icsalabs com
Subject: Re: [fw-wiz] Using SSL accelerators in firewalls

I'm not sure that there's all that much delineation between 
the ammount of 
trust necessary to go to the border of a company and the 
ammount of trust 
of doing SSL directly to an IIS box.

Paul
--------------------------------------------------------------
---------------
Paul D. Robertson      "My statements in this message are 
personal opinions
proberts () patriot net      which may have no basis whatsoever in fact."

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: