[4291] in WWW Security List Archive
Poor mans firewall
daemon@ATHENA.MIT.EDU (Dave Race)
Fri Feb 7 20:38:01 1997
Date: Fri, 07 Feb 1997 14:56:23 -0800
From: Dave Race <drace@earthlink.net>
Reply-To: drace@earthlink.net
To: WWW-SECURITY@ns2.rutgers.edu
CC: edavis33@earthlink.net
Errors-To: owner-www-security@ns2.rutgers.edu
My firm is preparing to introduce the Internet access to our users. We
are concerned with Internet security but we do not have the budget for a
firewall. The first service we intend to provide is Internet e-mail.
The LAN Administrator came up with the following idea:
Set up an NT server with a MS Exchange gateway from MS Mail. Install
two NIC, one configured with IP attached to the Internet and the other
configured with IPX attached to our internal LAN.
Internet <-----> (IP) Exchange Server [NT] (IPX) <-----> Internal LAN
The internal LAN also carries TCP/IP traffic, but the theory is that the
IP is safe from the Internat because the NIC attached to our LAN speaks
IPX only.
We know that this may limit us to e-mail only, but the hope is that we
will find the funds to build a proper firewall.
What do you think???
Thanks.
--
========================================================================
Dave Race, UNIX/WAN Administrator drace@earthlink.net
Risk Data Corporation, Inc. http://www.riskdata.com
111 Pacifica 3rd Floor Phone: (714) 753-8010
Irvine, CA 92618-3311 Fax: (714) 753-8020
========================================================================