Gentoo Archives: gentoo-security

From: Tobias Klausmann <klausman@××××××××××××.de>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] iptables window of opportunity at startup
Date: Wed, 08 Feb 2006 11:47:25
Message-Id: 20060208113654.GA1002@eric.schwarzvogel.de
In Reply to: Re: [gentoo-security] iptables window of opportunity at startup by Oliver Schad
1 Hi!
2
3 On Wed, 08 Feb 2006, Oliver Schad wrote:
4 > > Why (outside of s specific attack in that area) would one *not*
5 > > respond to pings? Outside from a specific attack in that area
6 > > happening, I see no reason to do so.
7 >
8 > Everyone knows, that only stealthed hosts are secure. To archive this,
9 > you have to block not only icmp but also arp. ;-)
10
11 I prefer diagonal cutters for that kind of security. A hardwall
12 of the drastic kind, if you will.
13
14 Regards,
15 Tobias
16
17 PS: On of our trainees has a teacher at school that said that
18 ICMP was the "Hacker Protocol". Boy, did we had a laugh at his
19 scripts.
20
21 --
22 You don't need eyes to see, you need vision.
23 --
24 gentoo-security@g.o mailing list

Replies

Subject Author
Re: [gentoo-security] iptables window of opportunity at startup Oliver Schad <o.schad@×××.de>