Guys,
I wonder if there are firewall/intrusion detection products that can
deal with TCP session hijack.. I didn't see threads related to this
topic in the last half year ..okay, I'm new to this list.. ;)
Suppose the TCP session is not encrypted, and the attacker is on the
packet's route, what can we do about it? Surrender..??
Of course not. We can build statistical analysis on number of invalid
packets that transmitted on each session. Has anybody done this? Is this
approach valid anyway?
I'd like to see other solutions/products beside encryption/routing/netw.
segmentation.
regards,
Doy
Follow-Ups:
|
|