Great Circle Associates Firewalls
(September 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Spoofing Messages in the Log files
From: bobk @ manzanita (Bob Konigsberg)
Date: Tue, 3 Sep 1996 09:29:45 -0700
To: firewalls @ GreatCircle . COM, nmorrow @ magi . com

Internal "spoofing" is also due to the fact that many people simply
make up a network number for labs and such, not realizing that this
prevents Internet access to the particular network in question.

The solution to this is either central administration of private
IP networks (a la RFC 1918), or router policies that don't allow
the propagation of such network numbers beyond the boundaries of
the labs.  

Another possibility is internal firewalling of "unauthorized" traffic.

I've had to use all of these methods, depending on the situation.

BobK

Indexed By Date Previous: Denied packets with no protocol??
From: Rob Sansom <sansom @ connectix . com>
Next: Re: NT port activity list
From: Bill Stout <bill . stout @ hidata . com>
Indexed By Thread Previous: Spoofing Messages in the Log files
From: nmorrow @ magi . com (Norman Morrow)
Next: Master
From: Ghada Farouk <gfarouk @ iti-idsc . gov . eg>

Google
 
Search Internet Search www.greatcircle.com