folks
we're bringing a data centre online shortly and i'm trying to convince our organisation of the need to secure it behind a firewall(s) cluster but i'm having some difficulty
i'm told that since applications such as AD etc use RPC & DCOM and other unpredicatable ports and there are IPsec tunnels running between us and trusted 3rd parties that a firewall is pointless
i'm still arguing for a firewall allowing rpc etc BUT between specific endpoints which should be hardened to a rigid build
has anyone seen any whitepapers on such or have any useful links or views
thabks to anyone taking the time to reply
greatly appreciated