[CLUE-Tech] Of Security and Firewalls..

Brandon N bneill at yahoo.com
Tue Mar 20 07:45:38 MST 2001


The difference between a closed port and no port is an ICMP response.

when you're setting up a firewall, there are two options, REJECT or
DENY
REJECT simply drops the packet, DENY sends back an ICMP packet.

Brandon

--- Cyberclops <Cyberclops at hawaii.rr.com> wrote:
> WOuld this help a person like myself running a single work station on
> a
> cable modem?
> 
> By the way I have all the ports that Shields Up scans closed.  It
> sees
> them, but notes they are closed.  It would be nicer to be invisable.
> 
> 
> rfrank wrote:
> 
> > I logged in as root and compared my scripts with what ClarkConnect
> > did for the same topology.  My rc.firewall contained far fewer
> ipchains
> > entries but other than that, I was pretty close.  Then the fun
> began.
> > I did a shields-up scan of my site (www.linuxclssroom.org) and
> > the report was that the machine was cloaked: it had not only
> blocked
> > the ports, it appeared as if it had dropped of the net.  I checked
> the
> > logs and sure enough, there it was as blocked.  Sweet.
> > 
> > Bottom line: learn all you can from net docs and helpful
> clue-techies
> > and try ClarkConnect to learn more and to stay safely on-line.
> > 
> > Roger Frank
> > 
> > _______________________________________________
> > CLUE-Tech mailing list
> > CLUE-Tech at clue.denver.co.us
> > http://clue.denver.co.us/mailman/listinfo/clue-tech
> _______________________________________________
> CLUE-Tech mailing list
> CLUE-Tech at clue.denver.co.us
> http://clue.denver.co.us/mailman/listinfo/clue-tech


__________________________________________________
Do You Yahoo!?
Get email at your own domain with Yahoo! Mail. 
http://personal.mail.yahoo.com/



More information about the clue-tech mailing list