Before SP5 you couldn't even disable source-routing on an NT box. Finally
this has been fixed. Another reason NT has been distrusted for so long as a
firewall base OS.
James Strompolis
Aleph Consultants, Inc.
[EMAIL PROTECTED], http://www.ribs.com
----- Original Message -----
From: Chris Michael <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Saturday, May 29, 1999 9:27 AM
Subject: Why not NT?
>
> And why is that, exactly? Is this distrust based on an analysis of how
the
> firewall and OS interact? If someone wants to argue that the OS has a
> major role in determining the performance and stability of a firewall
> platform, I'll allow that as given. But if someone tells me the OS
affects
> the security of the firewall, then I'd be interested in knowing *why* they
> believe that's true. No points given for "because it's NT". :-)
>
> Hypothetically, suppose there was a firewall that had code sitting right
> about the network drivers that grabbed the packets, processed them, and
> sent them back down to the network drivers. From a security perspective,
> would you be concerned about the OS or the firewall code?
>
> Chris
>
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]