2 Feb 2004 01:03
Re: common file to overwrite common.def
Tom Eastep <teastep <at> shorewall.net>
2004-02-02 00:03:16 GMT
2004-02-02 00:03:16 GMT
On Mon, 2 Feb 2004, Lito Kusnadi wrote: > Hi, I noted on the documentation that we can create a file called > "common" to overwrite the common.def. > Basically, I am trying to blocking stealth scan for IDENT, Netbios, and > SMB. > I have created the "common" file, and put the rules (directly by copying > from the common.def and change the "reject" to "DROP"). But when I do a > scan from http://scan.sygate.com/stealthscan.html, it's still marking as > OPEN. > Do I need to add anything in shorewall.conf to tell that the 'common' > file exists? > No -- what does "shorewall show common" show? > 2nd question: If a port can be scanned but CLOSED (nothing is running on > that port), can anyone hack into it? No. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep <at> shorewall.net
RSS Feed