Slashdot Mirror


What Is the Future of Firewalls?

jlmale0 writes "When I mess with my WAP/router at home or coordinate with the network team at work, it seems like I'm stuck in 1995. We're still manually listing IP address/port combinations for our firewall rules. There's a certain simplicity to this when dealing with a single system, but there are firewalls everywhere these days. What's available for managing complex firewall arrangements? What's being developed? Can I take a Visio diagram, run it through a script, and get a list of firewall rules? What about a GUI that illustrates the current system configuration and then lets me drag and drop systems across firewalls, and have the individual firewall ports automatically configured? What about tying a firewall into an authentication system so that when jdoe logs in, only then are the firewalls opened to pass her traffic? What about managing distributed firewalls so that one repository of rules opens up your system's firewalls, the DMZ firewall, and the public firewall all at once? Let's get a conversation started. What cool projects do I need to know about? What cool management features would you like to see? What's next for firewall management?"

8 of 414 comments (clear)

  1. When you finish your MBA- it'll all become clear. by bsane · · Score: 4, Funny

    When you finish your MBA- it'll all become clear.

  2. Re:When you finish your MBA- it'll all become clea by RobDollar · · Score: 5, Funny

    Do you get a free Belkin 54g with your MBA?

  3. What's next for firewall management? by Centurix · · Score: 5, Funny

    I haven't looked, but I'm sure there's and iPhone app for that.

    --
    Task Mangler
  4. Just run it through a Chinese server by countertrolling · · Score: 2, Funny

    They'll firewall it for you..

    --
    For justice, we must go to Don Corleone
  5. I've got the fix for you by RJHelms · · Score: 2, Funny

    Create a GUI interface using Visual Basic. See if you can track an IP address

  6. Re:Feature, not bug by clintonmonk · · Score: 5, Funny

    Things that are stupid, slow, and require physical access are that much more secure... in bed.

  7. Re:Future of Internet and firewalls by Crackez · · Score: 3, Funny

    BitterOak's Sig:
    "If I can be modded down for being a troll, can I be modded up for being an orc, or a balrog?"

    No, You can be modded up for being a Unix Sysadmin, Unix Developer, or M$ hater. All of the others you mention are downward.

  8. New advances in firewall technology by bl8n8r · · Score: 4, Funny

    There are currently a number of applications being developed by DORKA which will allow PHBs to manage their own corporate firewalls from an Excel spreadsheet or Microsoft JET database. The applications are being developed from a usability standpoint rather than a security standpoint which allows all traffic to be allowed by default (IPv6 is ignored for simplicity because nobody understands it anyway). When the software detects a DDoS, Intrusion, or Security Breach in progress, it will send an email to the managing PHB and trigger a rule to route BLAME packets through Layer 8 instead. All there is to the interface is a red button marked "Easy" a Yellow button marked "Out To Lunch", and a red button marked "WTF?". You should find it very exciting.

    --
    boycott slashdot February 10th - 17th check out: altSlashdot.org