Bill,

Understood, and I was not necessarily refering to you in this past
posting, but, to the question and answers in general.  Please, no offense
meant.

And thanks for the bit of clarification on raptor, that adds much to
folks' knowledge levels in trying to pick the proper device for solutions
for sure.

Thanks,

Ron DuFresne

On Wed, 18 Apr 2001, Bill Royds wrote:

> I know that the Raptor proxy checks for conformance to HTTP RFC's. A common 
>complaint on Raptor mailing list  is that it won't pass Microsoft SOAP through the 
>firewall because it rejects the extra HTTP commands introduced by Microsoft.
> Same thing applies to DNS, SMTP, FTP and NNTP. This sometimes causes people to say 
>FW-1 must be "better" because it doesn't "break" on non-standard traffic.
>  But it is true that modern packet filtering firewalls go into more depth (find 
>ports used by FTP for example).
> I was just giving a simplistic definition.
> 
> 
> -----Original Message-----
> From: [EMAIL PROTECTED]
> [mailto:[EMAIL PROTECTED]]On Behalf Of Ron DuFresne
> Sent: Wednesday, April 18, 2001 02:57
> To: Bill Royds
> Cc: Yap Kung Leng; [EMAIL PROTECTED]
> Subject: RE: Packet Filtering & Proxy Server
> 
> 
> 
> I see this answer alot, yet, have watched awhile, and asked a few times,
> how deeply?  How far into the packet do the various proxies delve?  Is
> that not the way to determine how they rank against one another?  How
> effective they are in securing a protocol would be addressed with some
> clarification in this area, no?  How much information is there giving
> these kinds of details?  Is there a site out here with a detailed markup
> of various proxies that folks can compare the depth of the processing a
> proxy goes to determine compliance with a sites policy?
> 
> 
> Thanks,
> 
> Ron DuFresne
> 
> 
> 
> On Tue, 17 Apr 2001, Bill Royds wrote:
> 
> > A packet filter looks only at the IP and TCP/UDP headers (it may assemble the 
>stream for TCP) but not at the contents of the packet.
> >   An Application Proxy firewall looks  at the full contents of packets and checks 
>for conformance to the application (HTTP, Pop3 FTP) service RFCs.
> > 
> > -----Original Message-----
> > From: [EMAIL PROTECTED]
> > [mailto:[EMAIL PROTECTED]]On Behalf Of Yap Kung Leng
> > Sent: Tuesday, April 17, 2001 22:57
> > To: [EMAIL PROTECTED]
> > Subject: Packet Filtering & Proxy Server
> > 
> > 
> > Hi all,
> > 
> >  I am a newbie. Can anyone tell me what are the different between Packet
> > Filter & Proxy Server?
> > 
> >  Thank you all
> > 
> >  Regards,
> > KL Yap
> > 
> > -
> > [To unsubscribe, send mail to [EMAIL PROTECTED] with
> > "unsubscribe firewalls" in the body of the message.]
> > 
> > -
> > [To unsubscribe, send mail to [EMAIL PROTECTED] with
> > "unsubscribe firewalls" in the body of the message.]
> > 
> 
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
> "Cutting the space budget really restores my faith in humanity.  It
> eliminates dreams, goals, and ideals and lets us get straight to the
> business of hate, debauchery, and self-annihilation." -- Johnny Hart
>       ***testing, only testing, and damn good at it too!***
> 
> OK, so you're a Ph.D.  Just don't touch anything.
> 
> -
> [To unsubscribe, send mail to [EMAIL PROTECTED] with
> "unsubscribe firewalls" in the body of the message.]
> 
> 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
"Cutting the space budget really restores my faith in humanity.  It
eliminates dreams, goals, and ideals and lets us get straight to the
business of hate, debauchery, and self-annihilation." -- Johnny Hart
        ***testing, only testing, and damn good at it too!***

OK, so you're a Ph.D.  Just don't touch anything.

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to