> how  do  you  know  they don't, but fail due to anti-spoofing at the
> border router and so fall back to non-spoofed relay attempt?

Read my post and your client's tale again. This is precisely my point,
to wit:

>> If  you could compromise...using IP spoofing...why wouldn't you use
>> that first?

In your "counterexample," exactly as I suggested, IP spoofing is tried
first.

> tcp/ip spoofing is probably very rare anyway.  There are 100's of 1000's of 
> open relays and proxies, and friendly network operattors,  available 
> without spoofing.

Agreed. In kind, I questioned the account of the person you mentioned.
Was that not clear?

-Sandy


To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html
List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/
Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/

Reply via email to