[Discuss] Separate commercial firewall?

Dan Ritter dsr at randomstring.org
Thu Jan 7 13:22:19 EST 2016


On Thu, Jan 07, 2016 at 12:52:14PM -0500, John Hall wrote:
> In what cases is an integrated firewall in a good home router insufficient?
> If it's not necessary could this unit actually compromise security?
> 

Two different directions:

1. home routers are often targets of attack because: there are
thousands of them, they don't get updated code, they are often
managed badly or set to defaults, and the people depending on
them might not even notice.

2. anything in your path can compromise security. The question
is, given that the ISP already controls the upstream router, is
there anything that they can do with the local box that they
can't do upstream? To which the answer is, maybe, but why
bother?

-dsr-



More information about the Discuss mailing list