On Thu, 12 Jul 2001, Russell Aspinwall spewed into the ether:
> Can fingerprinting a Checkpoint FW be made more difficult by using a
> packet filtering router on the Internet facing interface, so that all
> the only selected IP addresses can access the ports < 1023.
No. nmap as root on a Linux/BSd machine can scan from ports below 1023,
or it can be made to appear to do so.
Devdas Bhagat
--
Woman inspires us to great things, and prevents us from achieving them.
-- Dumas
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls