Networking Forums

Networking Forums > Network Hardware > Home Networking > Does a ISDN Lan Modem require a separate firewall?

Reply
Thread Tools Display Modes

Does a ISDN Lan Modem require a separate firewall?

 
 
Rob Morley
Guest
Posts: n/a

 
      10-21-2003, 11:31 AM
(E-Mail Removed) <(E-Mail Removed)> wrote:
> Bernard Peek <(E-Mail Removed)> wrote:
> > In message <bn05kj$q16r9$(E-Mail Removed)>,
> > (E-Mail Removed) writes
> > >Bernard Peek <(E-Mail Removed)> wrote:
> > >> In message <bmouj8$poenm$(E-Mail Removed)>,
> > >> (E-Mail Removed) writes
> > >>
> > >>
> > >> >> If they foolishly run something that they shouldn't, the firewall will
> > >> >> prevent the trojan from accessing the network. Likewise with worms that
> > >> >> use their own SMTP engine.
> > >> >
> > >> >If SMTP is blocked how do you send mail?
> > >>
> > >> The firewall identifies the program that is trying to establish an SMTP
> > >> connection. You decide in advance which programs are permitted to make
> > >> outbound SMTP connections. The trojan won't be on the list and so
> > >> hopefully won't be able to spread beyond the infected machine.
> > >>
> > >Huh! That *really* doesn't make sense unless you're suggesting some
> > >sort of PGP signing process for the program. Any fool trojan can
> > >pretend it's any old mail program.

> >
> > At the very least it would need the trojan to overwrite an existing
> > program file that was already authorised to make an outgoing connection.
> > Some firewall programs take a checksum when you first authorise the
> > program. So a trojan would need to have the same file name and the same
> > checksum too. It's possible, but unlikely.
> >

> How can a *firewall* checksum a program? All it has to work with is
> IP packets, in most cases a firewall will be on a different piece of
> hardware from where the mail program is running.
>
>

They're talking about running a software firewall to provide outbound
protection on machines behind a router, as would be clear to you if you
had read the previous posts.
 
Reply With Quote
 
 
 
 
Bernard Peek
Guest
Posts: n/a

 
      10-21-2003, 12:06 PM
In message <bn345o$r24v6$(E-Mail Removed)>,
(E-Mail Removed) writes
>Bernard Peek <(E-Mail Removed)> wrote:
>> In message <bn05kj$q16r9$(E-Mail Removed)>,
>> (E-Mail Removed) writes
>> >Bernard Peek <(E-Mail Removed)> wrote:
>> >> In message <bmouj8$poenm$(E-Mail Removed)>,
>> >> (E-Mail Removed) writes
>> >>
>> >>
>> >> >> If they foolishly run something that they shouldn't, the firewall will
>> >> >> prevent the trojan from accessing the network. Likewise with
>> >> >>worms that
>> >> >> use their own SMTP engine.
>> >> >
>> >> >If SMTP is blocked how do you send mail?
>> >>
>> >> The firewall identifies the program that is trying to establish an SMTP
>> >> connection. You decide in advance which programs are permitted to make
>> >> outbound SMTP connections. The trojan won't be on the list and so
>> >> hopefully won't be able to spread beyond the infected machine.
>> >>
>> >Huh! That *really* doesn't make sense unless you're suggesting some
>> >sort of PGP signing process for the program. Any fool trojan can
>> >pretend it's any old mail program.

>>
>> At the very least it would need the trojan to overwrite an existing
>> program file that was already authorised to make an outgoing connection.
>> Some firewall programs take a checksum when you first authorise the
>> program. So a trojan would need to have the same file name and the same
>> checksum too. It's possible, but unlikely.
>>

>How can a *firewall* checksum a program? All it has to work with is
>IP packets, in most cases a firewall will be on a different piece of
>hardware from where the mail program is running.


We were specifically discussing personal firewalls that operate on each
machine in the network. They manage outgoing connections from each
machine on the network. The context seems to have been lost when my
original message was quoted.



--
Bernard Peek
London, UK. DBA, Manager, Trainer & Author. Will work for money.

 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
ISDN-NT1+2ab /w Annex A Modem hufaunder@yahoo.com Broadband 2 11-07-2006 07:24 AM
Does SSH require port 22 tcp outbound through the firewall? Spin Windows Networking 1 07-05-2006 05:51 PM
separate router and firewall happy Linux Networking 2 09-03-2004 11:11 PM
no ISDN device available error messg after switching from modem to isdn card (SuSE 9.0 Prof) Stefan Bischof Linux Networking 0 04-18-2004 08:46 AM
Separate modem and router public mike Broadband 1 01-03-2004 11:22 PM



1 2 3 4 5 6 7 8 9 10 11