Great Circle Associates Firewalls
(January 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Closing the NetBeui over TCP Port
From: Ben <adept @ minerva . cis . yale . edu>
Date: Wed, 24 Jan 1996 21:52:34 -0500 (EST)
To: firewalls @ greatcircle . com
In-reply-to: <199601250248 . SAA01440 @ mobius . msri . org>

> : I really don't know too much about NetBEUI, but it strikes me that 
> : anytime that you allow any protocol to pass through the firewall without 
> : having it examined, you're asking for trouble.

> I do not think NetBeui is even a "routable" protocol.  This is assuming
> that your firewall is on the same network as your internal network.

I'm not so sure I see why 'routability' is necessary.

All you need to be able to do is convince NetBEUI to encapsulate a few IP 
packets that get thrown onto the secured internal network once it reaches 
the host and you've got a problem.

Its a problem since you've just tunnelled past the firewall and its a 
problem since most people have firewall/network configurations in the 
crunchy on the outside, soft-on the inside variety that blindly trust 
internal hosts.

Ben.
____
Ben Samman .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
  .
 samman @
 cs .
 yale .
 edu
"If what Proust says is true, that happiness is the absence of fever, then
I will never know happiness. For I am possessed by a fever for knowledge,
experience, and creation."                                      -Anais Nin
PGP Encrypted Mail Welcomed        Finger samman @
 suned .
 cs .
 yale .
 edu for key
Want to hire a soon-to-be college grad? 		Mail me for resume



References:
Indexed By Date Previous: Re: Closing the NetBeui over TCP Port
From: dave @ msri . org (Dave Wright)
Next: OK I give up. I will post no more forever.
From: "A. Padgett Peterson, P.E. Information Security" <PADGETT @ hobbes . orl . mmc . com>
Indexed By Thread Previous: Re: Closing the NetBeui over TCP Port
From: dave @ msri . org (Dave Wright)
Next: Re: Closing the NetBeui over TCP Port
From: adept @ minerva . cis . yale . edu (Ben)

Google
 
Search Internet Search www.greatcircle.com