Gentoo Archives: gentoo-security

From: Willie Wong <wwong@×××××××××.EDU>
To: gentoo-security@l.g.o
Subject: Re: [gentoo-security] RE: port knocking
Date: Tue, 04 Oct 2005 22:01:38
Message-Id: 20051004215733.GA22609@princeton.edu
In Reply to: Re: [gentoo-security] RE: port knocking by Dan Gregory
1 On Tue, Oct 04, 2005 at 04:31:38PM -0400, Dan Gregory wrote:
2 > > -A PREROUTING -m ttl --ttl-eq 202 -j ACCEPT
3 > >
4 > > echo 204 > /proc/sys/net/ipv4/ip_default_ttl
5 >
6 > 202 != 204?
7 >
8 > Is this a typo?
9 >
10 Thought so first, but remember that each time a router touches it the
11 ttl gets decreased. So if the linux routing box it two hops away from
12 the laptop (which is likely if he has a separate wireless router
13 dedicated to such use) the difference of two would be the right
14 solution. :)
15
16 W
17 --
18 "What the hell, he thought, you're only young once, and
19 threw himself out of the window. That would at least keep
20 the element of surprise on his side."
21
22 - Ford outwitting a Vogon with a rocket launcher by going
23 into another certain death situation.
24 Sortir en Pantoufles: up 54 days, 58 min
25 --
26 gentoo-security@g.o mailing list