[788] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Router filtering not enough! (Was: Re: CERT advisory )

daemon@ATHENA.MIT.EDU (Paul Traina)
Thu Jan 26 16:21:27 1995

To: Jon Peatfield <J.S.Peatfield@amtp.cam.ac.uk>
Cc: "Jonathan M. Bresler" <jmb@kryten.Atinc.COM>,
        Jim Duncan <jim@math.psu.edu>, rens@imsi.com, ddrew@mci.net,
        firewalls@GreatCircle.COM, bugtraq@fc.net, z056716@uprc.com,
        jp107@amtp.cam.ac.uk
In-Reply-To: Your message of "Thu, 26 Jan 1995 16:02:47 GMT."
             <m0rXWew-0000odC%kro.amtp.cam.ac.uk@damtp.cambridge.ac.uk> 
Date: Thu, 26 Jan 1995 10:11:03 -0800
From: Paul Traina <pst@cisco.com>

> How hard would it be to modify tcpwraper (for example) to check the
> incomming MAC address on a connection and to be worried if it came from a
> list of routers but the address was the local net?

This breaks people who might have their netmasks set incorrectly on the local
net.

home help back first fref pref prev next nref lref last post