
organization-approved firewalls. To eliminate a major vulnerability,
all connections and accounts related to external network connections
should be periodically reviewed and deleted as soon as they are no
longer required.
Tip:
2.8 Virtual private networks
Virtual private networks (VPNs) allow a trusted network to com-
municate with another trusted network over untrusted networks
such as the Internet. Because some firewalls provide VPN capability,
it is necessary to define policy for establishing VPNs. Firewall-based
VPNs can be established in a number of configurations.
Tip:
2.9 Firewall administration
A firewall, like any other network device, has to be ...