11.01.2013 Views

Workshop

Workshop

Workshop

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Q My vendor says that its firewall isn’t a packet-filtering router or a proxy server. What’s up with<br />

that?<br />

A I love vendors. They’re so funny sometimes. Here’s the deal: Packet-filtering routers got a really,<br />

really bad rap a couple of years ago when someone figured out how to fake them out. They received a lot<br />

of bad press. Therefore, advanced firewalls aren’t really considered to be packet-filtering routers<br />

anymore—even though they still route packets, they still deal with packets on a network level, and they<br />

still filter. Also, they’re not particularly the ones with SMLI (which make decisions on the application<br />

level). Still, if it walks like a duck…<br />

Q Can’t my proxy server be compromised by all the bugs out there?<br />

A Anything’s possible. Whether you have a proxy server or a firewall, stay in touch with your vendor<br />

and be sure to get security patches as they become available. In general, however, your proxy server<br />

should not be running other programs besides the proxy programs—unless you’re a security expert and<br />

can warrant that these other programs won’t put the server at risk.<br />

Quiz<br />

1. What’s the difference between a proxy server and a packet-filtering router?<br />

A. Proxy servers filter on the network level, whereas routers filter on the application level.<br />

B. Proxy servers filter on the application level, whereas routers filter on the network level.<br />

C. Routers are security risks with improper configurations.<br />

D. Proxy servers are security risks with improper configurations.<br />

2. True or false? A proxy server is not considered “network glue.” Instead, it’s considered “just<br />

another server” (albeit a multihomed server).<br />

3. A packet-filtering router and a proxy server are both ________.<br />

A. users of Stateful Multi-Level Inspection<br />

B. multihomed<br />

C. security loopholes<br />

D. socket rockets<br />

4. TCP is ______________, and UDP is ___________.<br />

A. a pain to configure; wonderful<br />

B. problematic with government installations; okay with corporations<br />

C. easy; hard<br />

D. connection oriented; connectionless<br />

5. A proxy server can be overburdened by which of the following?<br />

A. Users asking it to proxy local LAN connections<br />

B. Users asking it to link to infrastructure valence<br />

C. Too much T1 traffic<br />

D. Too much searching on a Web site<br />

6. You can use normal DNS troubleshooting tools from within your network if which of the

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!