In a presentation I have heard at least one well known firewall vendor say
"sure it lets in attacks, but that's what you have an IDS for".  Its not a
good sign to have a firewall vendor that doesn't care about security.

-----Original Message-----
From: mouss [mailto:[EMAIL PROTECTED]]
Sent: Thursday, April 19, 2001 9:53 AM
To: Day, Kenneth; '[EMAIL PROTECTED]'
Subject: Re: Firewalls, packet filters, proxies, etc

At 14:58 18/04/01 -0400, Day, Kenneth wrote:

>5) A firewall should NEVER be left without a co-existing IDS solution,
>especially if one is 1/2 way serious about securing and managing the
>network.

I've heard this a lot of times. This means that marketing people from
IDS vendors have done a good job at convincing people their product
is necessary while it is not.


cheers,
mouss

*****************************************************************************
The information in this email is confidential and may be legally privileged.
It is intended solely for the addressee. Access to this email by anyone else
is unauthorized. 

If you are not the intended recipient, any disclosure, copying, distribution
or any action taken or omitted to be taken in reliance on it, is prohibited
and may be unlawful. When addressed to our clients any opinions or advice
contained in this email are subject to the terms and conditions expressed in
the governing KPMG client engagement letter.         
*****************************************************************************
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to