[8409] in Commercialization & Privatization of the Internet

home help back first fref pref prev next nref lref last post

Independent Milnet

daemon@ATHENA.MIT.EDU (John (Francis) Stracke)
Thu Nov 18 09:30:08 1993

Date: Thu, 18 Nov 1993 09:25:37 +0500
From: francis@avalle.insoft.com (John (Francis) Stracke)
To: looking.clarinet.com!brad@netcom.com
Cc: macnabr@cc.ims.disa.mil, com-priv@psi.com
In-Reply-To: Brad Templeton's message of Thu, 18 Nov 93 3:39:39 PST <9311180339.aa25864@looking.clarinet.com>


>Of course, if you allow outgoing telnet and ftp and etc. from milnet
>sites, that is still a security hole, but a lesser one and one you have
>decided to accept.
>
>You may consider providing a machine on the internet with an FTP repository

relay.mil, for example.  :-)

>that milnet users can get space on if they wish to put a file up for FTP.
>This is no security hole if outgoing ftp is already allowed.

I don't think they're doing this for security reasons.  Military
security does not permit connecting a secure machine to an insecure
one in any way; there are no secure machines on milnet.
(Theoretically.  There could, of course, be some mistakes.)  Of
course, they could be worrying about the same kind of security that, a
commercial site might; in that case, they could do as Sun does and run
a firewall.  (Sun even sells their firewall commercially.  Of course,
you presumably need to run it on one of their machines.  :-)

/===========================================================================\
|John (Francis) Stracke | My opinions are my own.                           |
|Insoft, Inc.           |===================================================|
|Mechanicsburg, PA      | Beware of wizards, for you are crunchy            |
|francis@insoft.com     |  and good with ketchup.                           |
\===========================================================================/

home help back first fref pref prev next nref lref last post