[CLUE-Tech] proper setup of NAT

Mike lister-clue at gantsfort.com
Tue Aug 3 08:08:17 MDT 2004


On Tue, Aug 03, 2004 at 08:01:04AM -0600, Chris Schock wrote:
> > Okay, so what do I need to change/add to my iptables so that my real IP
> > address is hidden?
> 
> It would be nice if they told you how they got this info so you could plug
> the hole. Maybe the site you used has more details somewhere in their web
> pages, but it's possible that the info was gotten through ICMP, do you
> have that open as well?

Hmm, that's a good point. I'm pretty sure this is disabled by default.
Okay, I can't ping my IP so I think that it's not possible via ICMP?

> Welcome to the club. I get oodles of these each day, they are nothing more
> than folks scanning and looking for vulnerable accounts - they are not
> singling you out specifically, since I see the exact same thing. If you're
> really worried about it you can move SSH to a lesser known port.

Just wanted to make sure I didn't need to do more other than close
unused ports and keep software up to date.

Thanks,
Mike



More information about the clue-tech mailing list