
2.12 Summary
An organization may want to support some services without using
strong authentication. For example, an anonymous FTP server may
be used to allow all external users to download open information. In
this case, such services should be hosted outside the firewall or on a
service network not connected to corporate networks that contain
sensitive data. Table 2.4 summarizes a method of describing such a
policy for a service such as FTP.
2.13 References
1. Barbara Guttman and Robert Bagwill, “Implementing Internet
Firewall Security Policy,” National Institute of Standards and
Technology, U.S. Department of Commerce, Gaithersburg,
Maryland, April, 2001. ...