[lug] Interesting Crash Report

John Starkey jstarkey at advancecreations.com
Wed Mar 21 11:27:31 MST 2001


I said the same thing. I thought portsentry was detecting before the firewall,
but I had someone do a friendly fire scan and DoS last night and it didn't
block him til he hit an open port.

But I do see that it inserts rules into /etc/rc.firewall

Anyone heard of firestarter? I heard last night that it's a good replacement
for Portsentry's tendency to die when flooded with Stealth mode running. But
from what i can gather firestarter is nothing but a GUI to ipchains. Does it
have a feature that I'm missing?

John

Nate Duehr wrote:

> PortSentry will do this.
>
> Nate
>
> Deva Samartha wrote:
> >
> > >  I've denied about two dozen
> > >/24 domains just because I dislike seeing anything hit port 111 (the
> > >first packet gets them blocked).
> >
> > That's really neat, if possible, would you mind sharing how you do that -
> > or name the software packages you use?
> >
> > Thanks,
> >
> > Samartha
> >
> > _______________________________________________
> > Web Page:  http://lug.boulder.co.us
> > Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug
> _______________________________________________
> Web Page:  http://lug.boulder.co.us
> Mailing List: http://lists.lug.boulder.co.us/mailman/listinfo/lug




More information about the LUG mailing list