Getting the Best of Both Worlds: The Third Generation ISA Firewalls

By Thomas W Shinder MD, MVP

The following is an article by Tom Shinder, of isaserver.org, that I snagged from his monthly newsletter.  Excellent stuff.

Last month I did an article on how to make the ISA firewall as dumb as a hardware firewall. One thing I didn’t point out were the advantages of the hardware firewall. The fact is that so-called hardware firewalls are very popular and represent the most common firewall seen in production today.

Firewalls have gone through an evolutionary process over the years. There are essentially three generations of firewalls. These are:

a) The first generation firewall. First generation firewalls were software firewalls that ran on general purpose operating systems and open spec hardware platforms

b) The second generation firewall. Second generation firewalls are dedicated hardware devices running proprietary operating systems and firewall software on specialized hardware platforms dedicated to running only the firewall software and firewall operating system

c) The third generation firewall. Third generation firewall is a software based firewall that runs on a general purpose operating system that has been specially configured and hardened to support only the firewall software and firewall software add-ons. The firewall software and operating system are installed on an open spec hardware platform that is designed to fully optimize the firewall software’s performance

Posted by Jake Covert on 12/1/2004, evening

Comments

There are no comments yet for this entry.

Add a comment.

Allowed HTML: <a href=""></a>, <u>, <em>, <strike>, <small>, <strong>, <blockquote>. Please use <pre><code> (and closing tags) for any code snippets. Other stuff will not be rendered once submitted.

Name:

Email:

Location:

URL:

Smileys

Remember my personal information

Notify me of follow-up comments?

Submit the word you see below: