OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Proxy+ Telnet Gateway Problems
From: Andrew Lewis (wizdumbUNIX.ZA.NET)
Date: Mon Jun 26 2000 - 12:58:20 CDT


The Problem:
------------
Many admins who use Proxy+ configure the remote administration port (which
works over HTTP) to only accept connections from the localhost.
Fortunately enough, the admin port doesn't allow connections which have
been bounced through the HTTP proxy. The telnet proxy, on the other hand,
is a different story. Oops.

Workaround:
-----------
Enable HTTP Basic authentication instead. And don't trust localhost only
security for anything.

Credit:
-------
Andrew Lewis aka. Wizdumb, One of the many losers from the MDMA crew
<www.mdma.za.net>