[4291] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

Poor mans firewall

daemon@ATHENA.MIT.EDU (Dave Race)
Fri Feb 7 20:38:01 1997

Date: Fri, 07 Feb 1997 14:56:23 -0800
From: Dave Race <drace@earthlink.net>
Reply-To: drace@earthlink.net
To: WWW-SECURITY@ns2.rutgers.edu
CC: edavis33@earthlink.net
Errors-To: owner-www-security@ns2.rutgers.edu

My firm is preparing to introduce the Internet access to our users.  We
are concerned with Internet security but we do not have the budget for a
firewall.  The first service we intend to provide is Internet e-mail. 
The LAN Administrator came up with the following idea:

Set up an NT server with a MS Exchange gateway from MS Mail.  Install
two NIC, one configured with IP attached to the Internet and the other
configured with IPX attached to our internal LAN.

Internet <-----> (IP) Exchange Server [NT] (IPX) <-----> Internal LAN

The internal LAN also carries TCP/IP traffic, but the theory is that the
IP is safe from the Internat because the NIC attached to our LAN speaks
IPX only.

We know that this may limit us to e-mail only, but the hope is that we
will find the funds to build a proper firewall.

What do you think???

Thanks.
-- 
========================================================================
Dave Race, UNIX/WAN Administrator	drace@earthlink.net
Risk Data Corporation, Inc.		http://www.riskdata.com
111 Pacifica 3rd Floor			Phone: (714) 753-8010
Irvine, CA  92618-3311			Fax:  (714) 753-8020 
========================================================================

home help back first fref pref prev next nref lref last post