OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Problems with natd and simple firewall
From: Mike Hoskins (mikeadept.org)
Date: Tue Jul 25 2000 - 16:52:35 CDT


On Tue, 25 Jul 2000, Rodney W. Grimes wrote:

> a) The non-problem it attempts to solve can be handled by a correct
> ipfw rule set.

Agreed.

> c) It also totally ignores the fact that the problematic IP addresses
> are much more than RFC1918 and include the following:
> 0.0.0.0/8, 127.0.0.0/8, 192.0.2.0/24, 169.254.0.0/16, 240.0.0.0/4
> that need to be dealt with properly and carefully at both interfaces
> in a firewall.

Point taken, and agreed.

-mrh

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message