<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>My EtherealMind&#187; Security</title>
	<atom:link href="http://etherealmind.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://etherealmind.com</link>
	<description>Network design, architecture, thinking, working. Tech.</description>
	<lastBuildDate>Thu, 09 Feb 2012 21:53:45 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Why Firewalls Don&#8217;t Have Telnet or SSH Clients</title>
		<link>http://etherealmind.com/firewall-dont-ssh-telnet-server/</link>
		<comments>http://etherealmind.com/firewall-dont-ssh-telnet-server/#comments</comments>
		<pubDate>Fri, 13 May 2011 03:37:13 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Netscreen]]></category>
		<category><![CDATA[Operation]]></category>
		<category><![CDATA[firewalls]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5593</guid>
		<description><![CDATA[I found this on Cyber Corner blog:

<blockquote><a href="http://blogg.kvistofta.nu/another-missing-asa-feature-telnet-and-ssh-client/">Another missing ASA-feature: telnet and ssh client</a>: "&#160;Every single decent Cisco-device on earth has the ability to make an CLI-user jump to another device with telnet or ssh. Except the ASA. I really wish that this feature could be added. Right now I am troubleshooting a firewall and from where I am right now the only way in is to SSH to the ASA. I can do whatever I want inside the firewall from my SSH-window, but I need to access a router inside of that firewall, and if this feature wasn&#180;t missing i could simply run 'ssh ip-address' to jump to the switch&#180;s CLI.

Am I the last CLI-.guy on this planet? Please, Cisco?&#160;</blockquote>]]></description>
		<wfw:commentRss>http://etherealmind.com/firewall-dont-ssh-telnet-server/feed/</wfw:commentRss>
		<slash:comments>14</slash:comments>
		</item>
		<item>
		<title>Internets of Interest:21 Apr 11</title>
		<link>http://etherealmind.com/bookmarks-21-apr-11/</link>
		<comments>http://etherealmind.com/bookmarks-21-apr-11/#comments</comments>
		<pubDate>Thu, 21 Apr 2011 15:12:24 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5502</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 21 Apr 11:</p>]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-21-apr-11/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Outburst: Cisco Catalyst 6500 ASA Services Module</title>
		<link>http://etherealmind.com/c6500-asa-module-comments/</link>
		<comments>http://etherealmind.com/c6500-asa-module-comments/#comments</comments>
		<pubDate>Thu, 31 Mar 2011 17:00:00 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Opinion]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5299</guid>
		<description><![CDATA[The Cisco C6500 ASA Service Module finally announced. It's been a long wait, here are my review notes for what little information we have on the product.]]></description>
		<wfw:commentRss>http://etherealmind.com/c6500-asa-module-comments/feed/</wfw:commentRss>
		<slash:comments>20</slash:comments>
		</item>
		<item>
		<title>Cisco SecureX &#8211; Nothing but Empty Words ?</title>
		<link>http://etherealmind.com/cisco-securex-empty-words/</link>
		<comments>http://etherealmind.com/cisco-securex-empty-words/#comments</comments>
		<pubDate>Tue, 29 Mar 2011 21:38:08 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5285</guid>
		<description><![CDATA[Apparently SecureX is "Context Aware Enforcement". It's also Cisco's current security strategy ( is that three or four in the last three years ? ). So it's something we should probably be aware of. Right ? 

I'm coming up with nothing.]]></description>
		<wfw:commentRss>http://etherealmind.com/cisco-securex-empty-words/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Citrix Branch Repeater Authentication With Cisco TACACS+</title>
		<link>http://etherealmind.com/citrix-branch-repeater-authentication-with-cisco-tacacs/</link>
		<comments>http://etherealmind.com/citrix-branch-repeater-authentication-with-cisco-tacacs/#comments</comments>
		<pubDate>Fri, 04 Mar 2011 17:04:55 +0000</pubDate>
		<dc:creator>John McManus</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Operation]]></category>
		<category><![CDATA[management]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5039</guid>
		<description><![CDATA[I have been looking about for documentation on how to configure TACACS authentication with a Citrix Branch Repeater, however so far I have only been able to find documentation for NetScaler. So I have setup a LAB and decided to write the documentation myself. For those who cannot be bothered to read this post there [...]]]></description>
		<wfw:commentRss>http://etherealmind.com/citrix-branch-repeater-authentication-with-cisco-tacacs/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Verifiying IPsec and SSL Performance of ASA Firewall</title>
		<link>http://etherealmind.com/verifying-ipsec-ssl-crypto-performance-cli/</link>
		<comments>http://etherealmind.com/verifying-ipsec-ssl-crypto-performance-cli/#comments</comments>
		<pubDate>Sun, 27 Feb 2011 15:37:30 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Operation]]></category>
		<category><![CDATA[cli]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=5015</guid>
		<description><![CDATA[It&#8217;s difficult to a get any documentation from Cisco that confirms the forwarding performance of the ASA firewall. However, once you have got a unit, the &#8220;show crypto acclerator statistics&#8221; is a handy way to verify and check the hardware performance of your ASA. I think that most of this output is self-explanatory so I&#8217;m [...]]]></description>
		<wfw:commentRss>http://etherealmind.com/verifying-ipsec-ssl-crypto-performance-cli/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>End of Life Notice for Cisco CS-MARS Questions CiscoíS Commitment to Security.</title>
		<link>http://etherealmind.com/end-of-life-cs-mars/</link>
		<comments>http://etherealmind.com/end-of-life-cs-mars/#comments</comments>
		<pubDate>Wed, 08 Dec 2010 11:43:12 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Opinion]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=4278</guid>
		<description><![CDATA[Cisco announces End Of Life for CS-MARS. Whither goes Cisco's commitment to Security ? ]]></description>
		<wfw:commentRss>http://etherealmind.com/end-of-life-cs-mars/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>Internets of Interest:2 Sep 10</title>
		<link>http://etherealmind.com/bookmarks-2-sep-10/</link>
		<comments>http://etherealmind.com/bookmarks-2-sep-10/#comments</comments>
		<pubDate>Fri, 03 Sep 2010 09:45:02 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[certification]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3850</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 2 Sep 10:</p>]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-2-sep-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Show 15 ñ Saving the Web With Dinky Putt Putt Firewalls</title>
		<link>http://etherealmind.com/show-15-saving-the-web-with-dinky-putt-putt-firewalls/</link>
		<comments>http://etherealmind.com/show-15-saving-the-web-with-dinky-putt-putt-firewalls/#comments</comments>
		<pubDate>Sun, 08 Aug 2010 22:29:43 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3668</guid>
		<description><![CDATA[Web Application Firewalls, Talking Puppets, ATM to IP migration and Dinky Putt Putt Firewalls. ]]></description>
		<wfw:commentRss>http://etherealmind.com/show-15-saving-the-web-with-dinky-putt-putt-firewalls/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Internets of Interest:30 Jul 10</title>
		<link>http://etherealmind.com/bookmarks-30-jul-10/</link>
		<comments>http://etherealmind.com/bookmarks-30-jul-10/#comments</comments>
		<pubDate>Fri, 30 Jul 2010 14:49:18 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3626</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 30 Jul 10:</p>]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-30-jul-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Packet Pushers Podcast &#8211; Show 12 &#8211; Get on the Ring!</title>
		<link>http://etherealmind.com/packet-pushers-show-12-get-on-the-ring/</link>
		<comments>http://etherealmind.com/packet-pushers-show-12-get-on-the-ring/#comments</comments>
		<pubDate>Sun, 18 Jul 2010 19:16:31 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[f5]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[worklife]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3608</guid>
		<description><![CDATA[Short, sharp and awesome. And covering more about FibreChannel over Token Ring. ]]></description>
		<wfw:commentRss>http://etherealmind.com/packet-pushers-show-12-get-on-the-ring/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco and Their Security Strategy</title>
		<link>http://etherealmind.com/poster-cisco-security-strategy/</link>
		<comments>http://etherealmind.com/poster-cisco-security-strategy/#comments</comments>
		<pubDate>Sat, 03 Jul 2010 15:24:17 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Posters]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Design]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3503</guid>
		<description><![CDATA[Recently, the Security Strategy from Cisco has become vague and ill defined. ]]></description>
		<wfw:commentRss>http://etherealmind.com/poster-cisco-security-strategy/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Packet Pushers Show 6 &#8211; Chewing on DDOS</title>
		<link>http://etherealmind.com/packet-pushers-show-6-chewing-on-ddos/</link>
		<comments>http://etherealmind.com/packet-pushers-show-6-chewing-on-ddos/#comments</comments>
		<pubDate>Sat, 05 Jun 2010 13:51:40 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[ddos]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=3464</guid>
		<description><![CDATA[We had planned a number of topics this week. Once we started on DDOS we didn't stop before the time was up. ]]></description>
		<wfw:commentRss>http://etherealmind.com/packet-pushers-show-6-chewing-on-ddos/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.packetpushers.net/podcast/Packet-Pushers-6-Chewing-over-DDOS.mp3" length="25330752" type="audio/mpeg" />
		</item>
		<item>
		<title>Packet Pushers &#8211; Show 3 &#8211; Defense in Depth &#8211; Phase Alpha</title>
		<link>http://etherealmind.com/packet-pushers-show-3-defense-in-depth-phase-alpha/</link>
		<comments>http://etherealmind.com/packet-pushers-show-3-defense-in-depth-phase-alpha/#comments</comments>
		<pubDate>Sat, 15 May 2010 17:30:50 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/packet-pushers-show-3-defense-in-depth-phase-alpha/</guid>
		<description><![CDATA[<a href="http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=370842767"><img class="alignright size-full wp-image-22" title="packetpusher.net logo v1-144-144" src="http://packetpushers.net/wp-content/uploads/2010/05/packetpusher.net-logo-v1-144-144.png" alt="" width="144" height="144" /></a>Ethan, Dan and Greg are Deep Diving into the Security Topic of &#8220;Defense in Depth&#8221; and what it really means. We had an open discussion that really didn't go far enough. That's why it's Phase Alpha.]]></description>
		<wfw:commentRss>http://etherealmind.com/packet-pushers-show-3-defense-in-depth-phase-alpha/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Cisco ASA Failover License Changes in Version 8.3</title>
		<link>http://etherealmind.com/cisco-asa-failover-licenses/</link>
		<comments>http://etherealmind.com/cisco-asa-failover-licenses/#comments</comments>
		<pubDate>Wed, 28 Apr 2010 06:15:02 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[asa]]></category>
		<category><![CDATA[Cisco]]></category>

		<guid isPermaLink="false">http://etherealmind.com/cisco-asa-failover-licenses/</guid>
		<description><![CDATA[Quick notes on the Virtual Context licensing requirements when using a Active/Standby (Failover) pair and looking for gotchas and traps. ]]></description>
		<wfw:commentRss>http://etherealmind.com/cisco-asa-failover-licenses/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Google: Meet Skipfish, Our Automated Web Security Scanner. Security Industry &#8211; You Failed.</title>
		<link>http://etherealmind.com/google-skipfish-security-industry-failure/</link>
		<comments>http://etherealmind.com/google-skipfish-security-industry-failure/#comments</comments>
		<pubDate>Sun, 21 Mar 2010 17:36:32 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Rant]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Operation]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/google-skipfish-security-industry-failure/</guid>
		<description><![CDATA[Google releases Skipfish into open source for automated web security scanning. The fact that this exists is an inditement on IT Security and their failure to address threats. ]]></description>
		<wfw:commentRss>http://etherealmind.com/google-skipfish-security-industry-failure/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Internets of Interest:9 Mar 10</title>
		<link>http://etherealmind.com/bookmarks-9-mar-10/</link>
		<comments>http://etherealmind.com/bookmarks-9-mar-10/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 09:01:29 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=2937</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 9 Mar 10:</p>]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-9-mar-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Blessay:Firewalls Are Like Noses:Everyone&#8217;s Got One.</title>
		<link>http://etherealmind.com/firewalls-everyone-got-one-not-special/</link>
		<comments>http://etherealmind.com/firewalls-everyone-got-one-not-special/#comments</comments>
		<pubDate>Sun, 07 Mar 2010 08:10:13 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blessay]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=1191</guid>
		<description><![CDATA[The thing about firewalls is that all networks have them. Once, firewall expertise was rare and a special job focus. Now, firewalls are like noses - everyone's got one. ]]></description>
		<wfw:commentRss>http://etherealmind.com/firewalls-everyone-got-one-not-special/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title>Cisco IPSec VPN Client &#8211; 64 Bit &#8211; In Beta</title>
		<link>http://etherealmind.com/cisco-ipsec-vpn-client-beta-released/</link>
		<comments>http://etherealmind.com/cisco-ipsec-vpn-client-beta-released/#comments</comments>
		<pubDate>Sat, 20 Feb 2010 19:06:23 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=2763</guid>
		<description><![CDATA[Cisco has released a new beta of their IPSec VPN client including a 64-bit for Windows. ]]></description>
		<wfw:commentRss>http://etherealmind.com/cisco-ipsec-vpn-client-beta-released/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Internets of Interest:12 Feb 10</title>
		<link>http://etherealmind.com/bookmarks-12-feb-10/</link>
		<comments>http://etherealmind.com/bookmarks-12-feb-10/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 14:21:27 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=2707</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 12 Feb 10:</p>]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-12-feb-10/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DDOS &#8211; A Problem Bigger Than You Can Ever Be</title>
		<link>http://etherealmind.com/ddos-bigger-than-you-corporate-internet-connection/</link>
		<comments>http://etherealmind.com/ddos-bigger-than-you-corporate-internet-connection/#comments</comments>
		<pubDate>Sun, 17 Jan 2010 19:29:30 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[ddos]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Operation]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/ddos-bigger-than-you-corporate-internet-connection/</guid>
		<description><![CDATA[Taking data from the Arbor Networks DDOS report for 2009 and applying it to real life makes for some ugly choices. ]]></description>
		<wfw:commentRss>http://etherealmind.com/ddos-bigger-than-you-corporate-internet-connection/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Cisco Releases BETA IPSec VPN Client for Windows 7</title>
		<link>http://etherealmind.com/cisco-beta-ipsec-vpn-client-windows-7/</link>
		<comments>http://etherealmind.com/cisco-beta-ipsec-vpn-client-windows-7/#comments</comments>
		<pubDate>Wed, 30 Sep 2009 12:15:59 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=1787</guid>
		<description><![CDATA[I recently stated the Cisco IPsec VPN Client would have no future development. Cisco has released a Beta version for Windows 7 and looking for feedback from Windows users. ]]></description>
		<wfw:commentRss>http://etherealmind.com/cisco-beta-ipsec-vpn-client-windows-7/feed/</wfw:commentRss>
		<slash:comments>17</slash:comments>
		</item>
		<item>
		<title>Internets of Interest: 16th Aug</title>
		<link>http://etherealmind.com/bookmarks-16th-aug/</link>
		<comments>http://etherealmind.com/bookmarks-16th-aug/#comments</comments>
		<pubDate>Sun, 16 Aug 2009 23:00:00 +0000</pubDate>
		<dc:creator>bookmarks</dc:creator>
				<category><![CDATA[Bookmarks]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://etherealmind.com/2009/08/17/bookmarks-16th-aug/</guid>
		<description><![CDATA[<p>Collection of useful, relevant or inane places on the the Internets for 16th Aug:</p>
]]></description>
		<wfw:commentRss>http://etherealmind.com/bookmarks-16th-aug/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Design: Cisco Firewall Services Module Virtualization Design Traps</title>
		<link>http://etherealmind.com/cisco-fwsm-configuration-design-trap-advice-help/</link>
		<comments>http://etherealmind.com/cisco-fwsm-configuration-design-trap-advice-help/#comments</comments>
		<pubDate>Thu, 13 Aug 2009 20:31:50 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Design]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[Operation]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=1035</guid>
		<description><![CDATA[The Cisco Firewall Service Modules (FWSM) has a design limitation based on its ability to discriminate packet forwarding between multiple contexts. It also applies to ASA/PIX software. Lets review this in detail and learn the evil consequences. ]]></description>
		<wfw:commentRss>http://etherealmind.com/cisco-fwsm-configuration-design-trap-advice-help/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Blessay: Designing Enterprise DMZ and Multilayer Firewall Clusters</title>
		<link>http://etherealmind.com/design-enterprise-dmz-firewall-clusters/</link>
		<comments>http://etherealmind.com/design-enterprise-dmz-firewall-clusters/#comments</comments>
		<pubDate>Sun, 02 Aug 2009 15:44:46 +0000</pubDate>
		<dc:creator>Greg Ferro</dc:creator>
				<category><![CDATA[Blessay]]></category>
		<category><![CDATA[Blog]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[network design]]></category>

		<guid isPermaLink="false">http://etherealmind.com/?p=1646</guid>
		<description><![CDATA[In modern Enterprise networks, you typically have many clusters of firewalls protecting assets in your network. Since we use two or more layers of firewalls, we can put our DMZ for intermediate security zones in different places in our network. Lets gather together the different options and consider the merits or not, and sometimes how they 'self-build'.]]></description>
		<wfw:commentRss>http://etherealmind.com/design-enterprise-dmz-firewall-clusters/feed/</wfw:commentRss>
		<slash:comments>20</slash:comments>
		</item>
	</channel>
</rss>

<!-- Served from: etherealmind.com @ 2012-02-10 03:21:52 by W3 Total Cache -->
