Firewalls

Post Reply
User avatar
Cakedaddy
Posts: 9384
Joined: Thu May 20, 2004 6:52 pm

Post by Cakedaddy »

What firewall does your company use, and do you manage it?
Malcolm
Posts: 32040
Joined: Fri May 21, 2004 1:04 pm
Location: Minneapolis

Post by Malcolm »

Zone Labs, apparently. I don't get any say in the rule set, though. If it's championined by the same fuckwits that wrote startup scripts that take twenty minutes to run on my machine every bootup, then it's probably a bad idea.
Diogenes of Sinope: "It is not that I am mad, it is only that my head is different from yours."
Arnold Judas Rimmer, BSC, SSC: "Better dead than smeg."
Leisher
Site Admin
Posts: 71059
Joined: Thu May 20, 2004 9:17 pm
Contact:

Post by Leisher »

I use a Barracuda firewall for email and it's pretty nice. Very user friendly. Actually, our email goes through multiple filters, Barracuda to Exchange to Outlook, and Trend fits in there somewhere too, but I honestly don't know if goes through Trend before Exchange or after. I think after.

For our internet connection:

First is AT&T's standard traffic filtering as our ISP. (My company used to pay to have them handle all traffic monitoring, but I cut that out. Big waste of money.)

Second is dual Cisco ASA 5510s. I do not know Cisco products, and find them to be very user and tech unfriendly. Rest assured that they are that way by design... Anyway, I have a vendor that we've kept for years mainly because he's the best tech I've ever met, and he's our "backup plan" in case we die or whatever. To keep him in the loop I usually throw him a minor project or two annually. Setting up those ASA 5510s late last year was one of them.

Third is Trend and Microsoft's local firewalls on laptops, desktops, and servers.




Edited By Leisher on 1297454303
"Happy slaves are the worst enemies of freedom." - Marie Von Ebner
"It was always the women, and above all the young ones, who were the most bigoted adherents of the Party, the swallowers of slogans, the amateur spies..." - Orwell
User avatar
Cakedaddy
Posts: 9384
Joined: Thu May 20, 2004 6:52 pm

Post by Cakedaddy »

Do you block IM programs? Or are your users able to do AIM, facebook, etc?
Leisher
Site Admin
Posts: 71059
Joined: Thu May 20, 2004 9:17 pm
Contact:

Post by Leisher »

Good question. I forgot that I have another hardware appliance, an Exinda, that I use to monitor and administer all bandwidth.

Very user friendly and I can control what types of apps are blocked and allowed, how much bandwidth they get, what apps get priority, etc.
"Happy slaves are the worst enemies of freedom." - Marie Von Ebner
"It was always the women, and above all the young ones, who were the most bigoted adherents of the Party, the swallowers of slogans, the amateur spies..." - Orwell
TheCatt
Site Admin
Posts: 58193
Joined: Thu May 20, 2004 11:15 pm
Location: Cary, NC

Post by TheCatt »

We used an Astaro (model 220?) at our last company that did pretty much everything. (email virus scanning, web scanning/blocking, ports, VPN, etc). It was nice as a all-in-one device, but it needed a more powerful CPU for all it did.

We ended up getting the symantec product for IM logging and blocking, and also for email virus checking.
It's not me, it's someone else.
Post Reply