OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: jon (jonsteelrat.dyndns.org)
Date: Thu Oct 11 2001 - 18:44:33 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On Thu, Oct 11, 2001 at 07:21:01PM -0400, Leif Madsen wrote:

    > I'm in the process of learning how to secure up my linux system. If I do a
    > port scan, it says that the ports are closed, but are sending back replies.
    > I want to setup a firewall which will not send back any replies so that it
    > looks like my computer is a black hole (including not returning "ping"
    > requests). I'm wondering what a good firewall to do this is, and what a good
    > port scanner is so that I can scan to make sure nothing is returned.
    >
    > I currently have LogSentry and PortSentry installed, as well as Tiny
    > Firewall. Any and all idea's appreciated.
    >
    > Thanks in advance.

    Host based IDS:

    http://www.tripwire.org

    Network IDS:

    http://www.snort.org

    Port scanner, network multi-tool:

    http://www.nmap.org

    OpenWall:

    http://www.openwall.com

    READ BugTraq!

    http://www.securityfocus.com

    Linux is a great firewall...

    Check out 'iptables':

    http://www.linuxguruz.org/iptables/howto/iptables-HOWTO.html

    Or stick with 'ipchains':

    http://www.linuxdoc.org/HOWTO/IPCHAINS-HOWTO

    Just a few of my favorites... sorry it seems it ran long.... ;)

    > --
    > Leif Madsen - Project Manager
    > http://www.plannettechnologies.com
    > Registered Linux User #209104
    > Current Linux Uptime for chmod.petrolia.net
    > 7:05pm up 1 day, 2:13, 2 users, load average: 0.01, 0.00, 0.05
    >