
blocking of these application protocols, then it’s not really a firewall;
it is a router.
It is important in the evaluation process to clearly identify every
port and protocol that an organization uses. New applications
should be tested in an isolated environment to ensure compliance
and to ensure that junkware does not install additional, undesirable
communication components. As wonderful as it may seem to soft-
ware and hardware marketers, a software component that sends a
message to them every time a printer is low on ink does not consti-
tute networking best practices.
7.3 Scanning the firewall and fixing vulnerabilities
Two primary tools, in addition ...