Great Circle Associates Firewalls
(July 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: How secure is xinetd's binding to specific interfaces
From: gunni @ if . is (Gunnar Ingvi Thorisson)
Date: Wed, 31 Jul 1996 10:09:53 +0000 (GMT)
To: lists @ lina . inka . de (Bernd Eckenfels)
Cc: amsden+ @ andrew . cmu . edu, gaarder @ actech . com, firewalls @ greatcircle . com
In-reply-to: <m0ulOax-0004jWC @ lina> from "Bernd Eckenfels" at Jul 31, 96 01:52:58 am

> Linux IS vulnerable to it. It will accept packets from outside on a
> interface if the packet matches any of the systems addresses. Outgoing
> packets however are nly recognized as local ones, if there is a route that
> points to the interface. (Otherwise the packet will be send and the arp code
> recognizes it and prints a: 'arp called for my own ip address'.

Lets say that we've two interfaces,    130.x.x.x   and   192.x.x.x on a 
linux firewall, someone sends packet addressed to interface 192 and the 
machines accepts it then it should reply on network 192 not 130? Am I 
right? If so, isn't that correct the the "tester/attacker" can't get 
access to any services running on Interface 192? Only Denial of service 
attack comes to my mind.

Just a thought...

Best regards,
Gunni

=========================================================================
 Gunnar Ingvi Þórisson                      E-Mail address:  gunni @
 if .
 is
 Kerfisstjóri og forritari, system administrator and programmer

 Íslensk forritaþróun hf. (Iceland Software Inc.)
 Suðurlandsbraut 4, IS-108 Reykjavík, Ísland
 Sími: (+354) 588-1511  Fax: (+354) 588-8728
=========================================================================



Follow-Ups:
References:
Indexed By Date Previous: TIS toolkit expert wanted
From: its @ asiaonline . net (Information Technologies And Systems)
Next: Re: IRC and Firewalls
From: Darren Reed <avalon @ coombs . anu . edu . au>
Indexed By Thread Previous: Re: How secure is xinetd's binding to specific interfaces
From: lists @ lina . inka . de (Bernd Eckenfels)
Next: Re: How secure is xinetd's binding to specific interfaces
From: lists @ lina . inka . de (Bernd Eckenfels)

Google
 
Search Internet Search www.greatcircle.com