Patch for iptables (Linux firewall)

Stefan Sperling stsp at stsp.name
Wed Oct 24 22:13:24 CEST 2007


On Wed, Oct 24, 2007 at 09:58:26PM +0200, Stefan Sperling wrote:
> On Wed, Oct 24, 2007 at 06:47:56PM +0000, Ewan Meadows wrote:
> > > IPs can be spoofed though, but OK, it makes it harder
> > > to get in.
> > Isn't there something that can be turned on through /proc and in the
> > kernel to get around this?
> 
> No, and I was talking nonesense anyway since you cannot
> spoof a TCP connection (which telnet requires).
> You'd never get the ACK :)

Mmmh on the other hand you might not care about the ACK.
No idea if a telnet session could be hijacked this way
or not.

Anyway, please just ignore my uneducated remarks about
IP spoofing.

-- 
stefan
http://stsp.name                                         PGP Key: 0xF59D25F0
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://mailman.dslinux.in-berlin.de/pipermail/dslinux-devel-dslinux.in-berlin.de/attachments/20071024/960816b6/attachment.pgp 


More information about the dslinux-devel mailing list