[comp.protocols.tcp-ip] Security via Router Filtering

ctw@aerospace.aero.org (Charles T. Wolverton) (04/08/90)

We are interested in using the filtering capabilities of routers to
provide protection against intrusion into some of our internal
subnetworks. In particular, we would like to allow E-mail access but
preclude TELNET and FTP. If your organization has implemented such an
approach, any info you would be willing to provide us would be
appreciated. Of special interest would be related experiences at other FCRCs.

Thanks in advance.

(PS. We know generally how to do it and are familiar with the
appropriate products. We are more interested in system issues - what
capabilities did you allow/disallow, how easy/hard was it to sell the
idea, etc.)

***  Charles T. Wolverton    *****  Aerospace Corporation  ***
***  ctw@aerospace.aero.org  *****  P.O. Box 92957  M1-023 ***
                             *****  Los Angeles, CA 90009  ***