[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: xinetd /etc/host.deny ALL:PARANOID



also sprach Chris Wagner <wagnerc@plebeian.com> [2002.01.11.0556 +0100]:
> >a bogus IP won't even make it past OSI layer 4 on debian...
> >rp_filter...
> 
> There are ways of doing it such that the box has NO WAY of knowing
> that the traffic is spoofed.  Granted, that is hard to do.  Even
> paranoid lookups can be overcome.  But it's just one more layer of
> defense and one more thing an attacker has to contend with.

okay, why libwrap then?

-- 
martin;              (greetings from the heart of the sun.)
  \____ echo mailto: !#^."<*>"|tr "<*> mailto:"; net@madduck
  
f u cn rd ths, u cn gt a nce jb in th prgrmng indstry

Attachment: pgpAp4Weld4dU.pgp
Description: PGP signature


Reply to: