Great Circle Associates Firewalls
(December 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: FW-1 does not prevent session hijacking? Please support claim.
From: Darren Reed <avalon @ coombs . anu . edu . au>
Date: Sat, 30 Dec 1995 06:40:14 +1100 (EDT)
To: brain21 @ montag33 . residence . gatech . edu (Brain21)
Cc: Firewalls @ GreatCircle . COM (Firewalls Mailing List)
In-reply-to: <Pine . LNX . 3 . 91 . 951229140439 . 7586B-100000 @ montag33 . residence . gatech . edu> from "Brain21" at Dec 29, 95 02:22:14 pm

Read:

"A Simple Active Attack Against TCP"
Laurent Joneray, Merit Network Inc., April 24, 1995
The 5th USENIX UNIX Security Symposium.

(Don't know why I didn't remember this earlier, sorry.)

I imagine that is what Checkpoint did.

It contains a full discussion plus some results of trials.

You should be able to find it through http://www.usenix.org/

What you can't stop happening is that things do change, as a result, so
it just becomes a matter of detecting those changes and making an
appropriate decision.

darren



References:
Indexed By Date Previous: Re: FW-1 does not prevent session hijacking? Please support claim.
From: Brain21 <brain21 @ montag33 . residence . gatech . edu>
Next: Dawg wants rootkit for Christmas
From: Sick Puppy <sikpuppy @ maestro . com>
Indexed By Thread Previous: Re: FW-1 does not prevent session hijacking? Please support claim.
From: Brain21 <brain21 @ montag33 . residence . gatech . edu>
Next: Firewalls-Digest V4 #716 -Reply
From: "Boni D. Bruno" <BONIB @ smtpgw . dswnet . com>

Google
 
Search Internet Search www.greatcircle.com