[788] in bugtraq
Re: Router filtering not enough! (Was: Re: CERT advisory )
daemon@ATHENA.MIT.EDU (Paul Traina)
Thu Jan 26 16:21:27 1995
To: Jon Peatfield <J.S.Peatfield@amtp.cam.ac.uk>
Cc: "Jonathan M. Bresler" <jmb@kryten.Atinc.COM>,
Jim Duncan <jim@math.psu.edu>, rens@imsi.com, ddrew@mci.net,
firewalls@GreatCircle.COM, bugtraq@fc.net, z056716@uprc.com,
jp107@amtp.cam.ac.uk
In-Reply-To: Your message of "Thu, 26 Jan 1995 16:02:47 GMT."
<m0rXWew-0000odC%kro.amtp.cam.ac.uk@damtp.cambridge.ac.uk>
Date: Thu, 26 Jan 1995 10:11:03 -0800
From: Paul Traina <pst@cisco.com>
> How hard would it be to modify tcpwraper (for example) to check the
> incomming MAC address on a connection and to be worried if it came from a
> list of routers but the address was the local net?
This breaks people who might have their netmasks set incorrectly on the local
net.