Great Circle Associates Firewalls
(October 1993)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: UDP packet relayer available
From: Tom Fitzgerald <fitz @ wang . com>
Date: Fri, 29 Oct 93 23:01:43 EDT
To: firewalls @ greatcircle . com

There's a UDP packet relayer available by anon-ftp:

ftp.wang.com:/pub/fitz/udprelay-0.2.tar.Z

It consists of two parts: 1) a daemon running on a firewall system which
forwards UDP traffic through the firewall as permitted by a configuration
file, and 2) Rsendto/Rrecvfrom routines which can be linked with
cooperative client programs to allow them to choose who they contact in the
outside world.

>From the original announcement:

| It allows forwarding between:
| 
| 1) specific pairs of internal and external hosts (nice for ntpd),
| 2) any internal host and a specific external host (nice for ntp query clients
|    or archie clients that you can't modify the source to), or
| 3) any internal host and any external host (nice for clients which you can
|    modify, since it requires replacing calls to sendto and recvfrom with
|    Rsendto/Rrecvfrom, in the spirit of socks).

Everyone who received 0.1 from me via e-mail should pick this up, it has
some small security fixes to protect users inside the firewall from other
users inside the firewall - no known bugs will make you vulnerable to
outsiders.

-- 
Tom Fitzgerald    Wang Labs, Lowell MA, USA    fitz @
 wang .
 com   1-508-967-5278


Indexed By Date Previous: Re: System Security
From: "Perry E. Metzger" <pmetzger @ lehman . com>
Next: Re: System Security
From: Bob Dew <rdew @ alw . nih . gov>
Indexed By Thread Previous: Re: Firewalls Digest V2 #216
From: Fred . Lowe @ EBay . Sun . COM (Fred Lowe)
Next: Security concerns of Corporate Customers
From: WARREN SMITH - LISLE INFORMATION SERVICES <WSMITH @ vaxl1 . danavictor . com>

Google
 
Search Internet Search www.greatcircle.com