Invisible Firewalls?
When adding a traditional hardware based firewall to a network, major network based surgery is needed a majority of the time. The potential for configuration problems with both internal clients and the router/proxy are increased. There is also overhead that goes into processing each packet or session for the firewall, making it difficult to come to an informed decision.
When looking though the eyes of an attacker, only minimal investigation and enumeration is needed to identify a device that is acting as a firewall. Its rule-set or “protection” features can be realized. READ ON
Subscribe to comments via RSS 2.0

