Re: one way firewall?

From: Dylan Griffiths <dylang_at_no.spam.please>
Date: Tue Aug 21 2007 - 12:25:56 CST

Dylan Griffiths wrote:
> So, a simple Linux bridge is not an issue (you have to enable packet
> forwarding manually on a firewall, so just don't do that), or you can
> make a more secure infrastructure. Just make sure you have a good set
> of policies and procedures about how things should be handled.

Another idea that occurs to me is that they could share a non-networked
connection to a shared storage device (USB or firewire HD). The trouble
here is setting it all up correctly. It's really bad when the
filesystem changes under the kernel's nose without it knowing about it.
  If you were to cycle the connections each day (swap in a new HD and
read the previous day's data), that reintroduces the possibility of
return data (unless you used a new HD each time).

I suppose it all matters on what the risks/benefits says.
Received on Tue Aug 21 12:26:03 2007

This archive was generated by hypermail 2.1.8 : Tue Aug 21 2007 - 12:57:08 CST