| | FIREWALL: ACCESS CONTROL Access to services can be controlled using any combination of the following attributes:
- the service itself
- the source or destination IP address and port
- the time of day and day of week
- available resources on the firewall
Very strong authentication is provided through a callback mechanism to the client using:
- Identd for multi-user Unix systems
- Windows NetBIOS lookups
- S/Key One Time Password
- RSA/DSA Challenge/Response
The last two are supported transparently on Windows 95/NT4.0 systems by the CEQURUX Authenticator.
|