Re: [fw-wiz] Proverbial appliance vs software based firewall

From: Marcus J. Ranum (mjrat_private)
Date: Mon Oct 14 2002 - 10:15:37 PDT

  • Next message: R. DuFresne: "Re: [fw-wiz] RE: Help w/ Port 137 Traffic"

    Dominic Malig wrote:
    >any updates on the
    >proverbial firewall appliance vs software firewall
    >'which is better' discussion(aside from the usuals re
    >hardened OS, cost, etc.)  
    
    It amazes me that the topic comes up at all!!! :)
    
    Inside every "appliance" is an operating system. Inside
    every ASIC or "embedded processor" is software. There's
    really no difference other than the packaging. I like
    the "appliance" approach because it lets the vendor
    guarantee a compatible and well-balanced hardware/software
    solution. But it amazes me when someone says "well, it's
    an appliance so it must be more secure/reliable/faster"
    uh. no.
    
    mjr.
    ---
    Marcus J. Ranum				http://www.ranum.com
    Computer and Communications Security	mjrat_private
    
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizardsat_private
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    



    This archive was generated by hypermail 2b30 : Mon Oct 14 2002 - 10:22:18 PDT