From owner-freebsd-security Thu Nov 22 8:26:17 2001 Delivered-To: freebsd-security@freebsd.org Received: from mailout05.sul.t-online.de (mailout05.sul.t-online.com [194.25.134.82]) by hub.freebsd.org (Postfix) with ESMTP id C623B37B417 for ; Thu, 22 Nov 2001 08:26:12 -0800 (PST) Received: from fwd04.sul.t-online.de by mailout05.sul.t-online.de with smtp id 166wg0-0003tJ-02; Thu, 22 Nov 2001 17:26:12 +0100 Received: from asterix.local (320080844193-0001@[217.80.84.32]) by fmrl04.sul.t-online.com with smtp id 166wfl-0iEOkiC; Thu, 22 Nov 2001 17:25:57 +0100 Received: (qmail 561 invoked from network); 22 Nov 2001 16:25:56 -0000 Received: from homer.local (HELO homer.local.nlocal) (192.168.1.50) by 0 with SMTP; 22 Nov 2001 16:25:56 -0000 Received: (nullmailer pid 270 invoked by uid 1100); Thu, 22 Nov 2001 16:25:55 -0000 Date: Thu, 22 Nov 2001 17:25:55 +0100 From: Clemens Hermann To: Enrico Giakas Cc: FreeBSD security ML Subject: Re: Juniper firewall Message-ID: <20011122172555.A241@homer.local> Mail-Followup-To: Clemens Hermann , Enrico Giakas , FreeBSD security ML References: <20011122144748.A241@homer.local> <598111959.1006448896@[192.168.102.87]> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <598111959.1006448896@[192.168.102.87]> von Enrico Giakas am 22.Nov.2001 um 17:08:16 (+0100) X-Mailer: Mutt 1.2.5i (FreeBSD 4.4-RELEASE i386) X-Sender: 320080844193-0001@t-dialin.net Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org Am 22.11.2001 um 17:08:16 schrieb Enrico Giakas: Hi Enrico, > Try the NEC SOCKS5-Proxy Firewall (it is free) from the site: > http://www.socks.nec.com/cgi-bin/download.pl thanks for the hint. Isn't Socks like NAT with authentication (in the result)? Does Socks offer any kind of filtering on the application-layer? Am I wrong in my assumption that a "real" application proxy can offer more security e.g. by not allowing to misuse open ports for any app on non-standard ports? /ch -- Wieviele Mitarbeiter von Microsoft benoetigt man fuer das auswechseln einer defekten Gluehbirne? Keine, Microsoft erklaert die Dunkelheit zum Marktstandart. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message