OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq archives for 1st quarter (Jan-Mar) 1995: Re: IP spoofing vs tcp wrappers and netacl

Re: IP spoofing vs tcp wrappers and netacl

Perry E. Metzger (perryimsi.com)
Tue, 24 Jan 1995 13:07:28 -0500

Christopher Klaus says:
> Probably the best way to prevent IP spoofing attacks is to turn off all
> ip-based authenication services, ie rsh, rlogin are the main ones.

Insufficient. If you can see at least part of the packet stream, you
can session-steal. This makes a mockery of things like S/Key.

Perry