[8409] in Commercialization & Privatization of the Internet
Independent Milnet
daemon@ATHENA.MIT.EDU (John (Francis) Stracke)
Thu Nov 18 09:30:08 1993
Date: Thu, 18 Nov 1993 09:25:37 +0500
From: francis@avalle.insoft.com (John (Francis) Stracke)
To: looking.clarinet.com!brad@netcom.com
Cc: macnabr@cc.ims.disa.mil, com-priv@psi.com
In-Reply-To: Brad Templeton's message of Thu, 18 Nov 93 3:39:39 PST <9311180339.aa25864@looking.clarinet.com>
>Of course, if you allow outgoing telnet and ftp and etc. from milnet
>sites, that is still a security hole, but a lesser one and one you have
>decided to accept.
>
>You may consider providing a machine on the internet with an FTP repository
relay.mil, for example. :-)
>that milnet users can get space on if they wish to put a file up for FTP.
>This is no security hole if outgoing ftp is already allowed.
I don't think they're doing this for security reasons. Military
security does not permit connecting a secure machine to an insecure
one in any way; there are no secure machines on milnet.
(Theoretically. There could, of course, be some mistakes.) Of
course, they could be worrying about the same kind of security that, a
commercial site might; in that case, they could do as Sun does and run
a firewall. (Sun even sells their firewall commercially. Of course,
you presumably need to run it on one of their machines. :-)
/===========================================================================\
|John (Francis) Stracke | My opinions are my own. |
|Insoft, Inc. |===================================================|
|Mechanicsburg, PA | Beware of wizards, for you are crunchy |
|francis@insoft.com | and good with ketchup. |
\===========================================================================/