Gentoo Logo
Gentoo Spaceship




Note: Due to technical difficulties, the Archives are currently not up to date. GMANE provides an alternative service for most mailing lists.
c.f. bug 424647
List Archive: gentoo-security
Navigation:
Lists: gentoo-security: < Prev By Thread Next > < Prev By Date Next >
Headers:
To: gentoo-security@g.o
From: Kirk Hoganson <kirk2@...>
Subject: Re: [OT?] automatically firewalling off IPs
Date: Thu, 06 Oct 2005 15:02:27 -0600
Matan Peled said the following:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> William Kenworthy wrote:
> 
>>Can anyone comment whether IP spoofing (for hiding country of origin) is
>>common?  Seems quite unlikely - at least at the current state of things.
>>Is it even possible to tell (at the firewall interface?)
>>
>>BillK
> 
> 
> I think that for hiding country of origin by IP spoofing is quite useless, at
> least on the Internet (It might work on a single subnet, or if you pretend to be
> another IP in your subnet, and then switches complicate it as well...)
> 

I think it depends on your purpose.  It is easy to get around, but 
blocking whole ranges based on country could help cut down on the 
vulerability scans that can be so annoying.  Our country does no 
business with China, yet various subnets are frequently scanned from 
addresses originating there.  Blocking those ranges would cause most of 
them to move on.  It is likely that you already block whole invalid 
subnets in your firewall rules anyway.
-- 
gentoo-security@g.o mailing list


Replies:
Re: [OT?] automatically firewalling off IPs
-- Brian Micek
References:
RE: [OT?] automatically firewalling off IPs
-- Tad Glines
Re: [OT?] automatically firewalling off IPs
-- Matan Peled
Re: [OT?] automatically firewalling off IPs
-- William Kenworthy
Re: [OT?] automatically firewalling off IPs
-- Matan Peled
Navigation:
Lists: gentoo-security: < Prev By Thread Next > < Prev By Date Next >
Previous by thread:
Re: [OT?] automatically firewalling off IPs
Next by thread:
Re: [OT?] automatically firewalling off IPs
Previous by date:
Re: [OT?] automatically firewalling off IPs
Next by date:
Re: [OT?] automatically firewalling off IPs


Updated Jun 17, 2009

Summary: Archive of the gentoo-security mailing list.

Donate to support our development efforts.

Copyright 2001-2013 Gentoo Foundation, Inc. Questions, Comments? Contact us.