[off topic] poor firewall (was Re: [Snort-users] Strange traffic?)

Bruno Gimenes Pereti pereti at ...3411...
Wed Sep 26 09:26:02 EDT 2001


> Looks like someone is trying to scan your net for TFTP servers.  Using a
> source port of 53 is a common method to bypass poorly configured
firewalls.

Hi,

I know it is not directly relationed to snort but I got worried when Erek
mensioned "poor configured firewalls".
Where could I find some information about *GOOD* IPChains rules and what
exploit are they for.

Thank's and sorry for the off topic.

Bruno Gimenes Pereti.





More information about the Snort-users mailing list