:How in the world could my inetd ident service be exploited? I just fixed
:the only problematic feature, fake id, to make it not read anything but a
:regular file and not let you try to use  someone else's name. I can't see
:any way that any part of it could be exploited...

    Typically the exploitation of identd is in the form of a denial-of-service
    attack.  What we saw at BEST were denial-of-service attacks against identd
    to prevent users on a particular shell machine from being able to initiate
    an IRC client session (because the remote IRC server would not be able to
    obtain ident info).  Early versions of Identd could be used for port
    scanning purposes, but not any more.  Since identd will only resolve
    connections comming from the client IP making the connection, there aren't
    very many "interesting" ways to abuse it.

                                                -Matt


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-hackers" in the body of the message

Reply via email to