Re: Blocking Nimda attempts (was [blank])

2002-12-02 Thread Jeff Bonner
the IP. HTH, Jeff Bonner pgpEVdgloeNlZ.pgp Description: PGP signature

RE: script init

2002-06-05 Thread Jeff Bonner
-Original Message- From: Olaf Meeuwissen Sent: Wednesday, June 05, 2002 7:23 PM CC: debian-firewall@lists.debian.org To: Jeff Bonner Subject: Re: script init For now, don't add it to runlevel 0, 1 or 6, which equate to halt (power-down), single-user (barely anything running

RE: attacks

2002-06-04 Thread Jeff Bonner
... this may not be necessary and you can experiment accordingly. HTH, Jeff Bonner -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

RE: rp_filter (was: `attacks')

2002-06-04 Thread Jeff Bonner
be entirely wrong. Incidentally, would you care to review the rest of my script for correctness? ;) I have solicited folks on the debian-firewall and netfilter lists, but no takers. It's about 7KB, FWIW. Jeff Bonner -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe

RE: rp_filter (was: `attacks')

2002-06-04 Thread Jeff Bonner
it somewhere. ;) Thanks, Jeff Bonner -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

IM file transfers with iptables

2002-02-23 Thread Jeff Bonner
is with a kernel module, but it's my understanding that one has not yet been written (or ported from 2.2) for this purpose. Can anyone supply me with a working snippet of code? Thanks in advance, Jeff Bonner Royal Oak MI USA PGP Key ID = 0x25ED7C88 Fingerprint = 1E3F 468D 8AA2 37A9 DEA4 4343 7866

RE: Searching for an appropriate iptables script

2002-02-08 Thread Jeff Bonner
) and they have given me additional ideas. Thanks! Jeff Bonner

iptables: SNAT vs MASQUERADE

2002-02-08 Thread Jeff Bonner
with 24MB be enough for 5 LAN users? 3) Are there any security implications using MASQUERADE instead of SNAT (less/more secure)? Thanks in advance, Jeff Bonner

Searching for an appropriate iptables script

2002-02-07 Thread Jeff Bonner
I'm replacing my current ipchains-based firewall, which serves a small internal LAN of 3 machines, with one that runs iptables/netfilter. Since I offer no services (yet), the goal is to make this IP address invisible to port scans and other grotesques from the internet, while interfering as