How to detect invasions?

ron.peterson at yellowbank.com ron.peterson at yellowbank.com
Fri Aug 29 21:13:11 EDT 2003


On Fri, Aug 29, 2003 at 08:53:01PM -0400, Dave Gavin wrote:

> If you have a spare system, you might consider setting up a firewall
> system using ipcop, smoothwall or one of the other open source
> firewalls out there. A stand-alone dedicated firewall box is a lot
> easier to maintain than a workstation with some iptables rules added.

Yes and no.  It may be easier to start with, but as you find yourself
wanting to do more sophisticated things, iptables (also check
ebtables.sourceforge.net) will provide much greater functionality.

Having recently witnessed the shortcomings of Cisco PIX firewall
equipment, nevermind consumer grade firewall toys, I'd vote for a cheap
PC w/ Linux any day.

-- 
Ron Peterson                   -o)
87 Taylor Street               /\\
Granby, MA  01033             _\_v
https://www.yellowbank.com/   ---- 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 232 bytes
Desc: not available
URL: <http://lists.blu.org/pipermail/discuss/attachments/20030829/c401edaf/attachment.sig>


More information about the Discuss mailing list