Gentoo Archives: gentoo-security

From: Mark Hurst <mark@××××××.net>
To: Frank Gruellich <frank@××××××××××××.org>
Cc: gentoo-security@l.g.o
Subject: Re: [gentoo-security] firewall suggestions?
Date: Fri, 09 Jan 2004 08:36:09
Message-Id: 20040109193347.295008bc.mark@gumrak.net
In Reply to: Re: [gentoo-security] firewall suggestions? by Frank Gruellich
1 > > > Not really. And why should a network scan be dangerous? Security by
2 > > > obscurity doesn't work. You can scan a well configured host all day
3 > > > long, who cares?
4 >
5 > > Why run a firewall at all if your hosts are so well configured?
6 >
7 > Because I want to offer services inside my network, I don't want to
8 > offer to the rest of the world. Think again about this question: you
9 > are asking, why routers are necessary.
10
11 Not at all, i was responding sarcastically to the assertion that it
12 doesn't matter if someone is able to scan the hell out of a
13 well-configured host. I don't agree with this. Today's well-configured
14 host is tomorrows target. All it takes is one pair of eyes on one line of
15 code.
16
17 I don't recall asking why routers are necessary. I may be braindead and
18 stupid, but i suspect they may have a purpose.
19
20 At least you didn't abuse anyone this time. That's progress :)
21
22 This topic is dead as far as i'm concerned, you keep default rejecting,
23 i'll keep default dropping, and we'll see if i manage to break the
24 Internet by doing so.
25
26
27 regards
28
29 --
30 gentoo-security@g.o mailing list

Replies

Subject Author
Re: [gentoo-security] firewall suggestions? Kim Ingemann <mail@×××××××××××.dk>