OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Henrik Nordstrom (hnoHEM.PASSAGEN.SE)
Date: Mon Jan 08 2001 - 18:34:59 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Dan Harkless wrote:

    > Well, there's a feature request for auth/ident/tap daemons running on OSes
    > (if any) that can distinguish after-the-fact between connections that
    > originated locally and those that originated remotely. Assuming that
    > doesn't break RFCs 931 / 1413, of course (I'd re-read them right now to
    > check, if I had the time)...

    Well, the simple fix would to deny queries for ports where there is a
    local service listening on the same interface/IP (or "ANY").

    --
    Henrik Nordstrom