Re: one way firewall?

From: Dave Hall <dave-slg_at_no.spam.please>
Date: Tue Aug 21 2007 - 13:08:07 CST

On Tue, Aug 21, 2007 at 11:30:59AM -0600, Gordon J. Holtslander wrote:
> I have little experience with firewalls.
>
> Is it possible to set up a one-way firewall where data can be moved from a
> windows 2000 computer to second system - a data host. (OS is relatively
> unimportant - but likely linux), but data can't be moved from the data host
> back to the windows 2000 system?

Are you talking about data or network connections? Others' suggestions
are all related to network connections.

> I am wondering if this system can be directly networked and firewalled to a
> second system that is networked. Is it possible to get data from the Windows
> 2000 system to the second system, but prevent any data from getting from the
> second system back to the Windows 2000 system. If any data is compromised on
> the second system I don't want it to have any access to the Windows 2000
> system.

It sounds like you just want to isolate the instrument's computer from the
big band network since it can not be properly managed.

Why not just add a second network card to the machine that you will be
using to fetch the data and connect the two with a cross-over cable. That
would handle the use case you described with mimimal complexity. You'd use
it as you would if it were on the main network but it would actually be on
it's own (small) private network. Your "second system" can then act like
a typical file server to the rest of the network.
Received on Tue Aug 21 13:08:19 2007

This archive was generated by hypermail 2.1.8 : Tue Aug 21 2007 - 13:08:22 CST