[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW-1] Comparation between ISA & Firewall-1
Title: RE: [FW-1] Comparation between ISA & Firewall-1 Michal, No articles. However, I take the view 1. ISa is a multi service platform - its a firewall, its a proxy server, its a cache. Security accredited firewalls are just that, firewalls and nothing else. 2. that ISA isn't accredited by the security authorities in the UK (CESG uk governement). Fw-1 is UK E3 accredited in various forms. 3. ISA is from microsoft which doesn't have a a good reputation/track record in the security world. FW-1 has an established track record. When we go for governement accrediation with FW-1 we get off to a good start. If FW-1 is confiured correctly it is secure. With ISA the question asked is can it ever be secure no matter how it is configured. 4. ISA server is difficult to manage remotely in a secure manner. It requires so may ports to be left open, rpcs >1023 etc etc 5. Without service pack 1 ISA is useless 6. ISA doesn't come on a hardened platform like nokia IPSO. You have to start hardening win2k etc which is error prone and time consuming I don't have any formal documents, but would be interested in any other replies you get. Regards, Keven -----Original Message-----
Hi all, Can anybody send me a link to some article about comparation between ISA server and Firewall-1?
I need to clear about management that they need replace ISA servers with Firewall-1.
Thank you for any comments Michal =================================================
|