RE: [Full-Disclosure] antisemtism, FD and bandwidth - what I want out of it

2004-08-06 Thread Bryan K. Watson
accordingly!...Maybe set a flag on the email header so that we can all filter according to our tastes. Cheers, -- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Bryan K. Watson - InfoSec Consultant - [EMAIL PROTECTED] ___ Full

RE: [Full-Disclosure] Netscreen 5GT Plus vs Fortigate-60

2004-08-03 Thread Bryan K. Watson
picking up Netscreen, there will be many changes still ahead. Cheers, -- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Bryan K. Watson - InfoSec Consultant - [EMAIL PROTECTED] - www.nettracers.com ___ Full-Disclosure - We believe

RE: [Full-Disclosure] Fortinet Firewalls

2004-08-02 Thread Bryan K. Watson
, -- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Bryan K. Watson - InfoSec Consultant - [EMAIL PROTECTED] - www.nettracers.com ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html

RE: [Full-Disclosure] Fortinet Firewalls

2004-08-02 Thread Bryan K. Watson
version of FortiOS now allows you to do PERL expression matching of any content as well and has a better than rudimentary antispam engine..still testing that one out though. Hope that answers your ??'s. Cheers, -- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Bryan K. Watson

RE: [Full-Disclosure] CISCO Vpn

2004-06-23 Thread Bryan K. Watson
. And finally, opening up a remote access method of any kind will expose your weak password policy to brute forcing. Multi-factor authentication should be employed and enforced. Client system certificates, SecurID and Authenex are some ways to do this multifactor authentication. Have fun, - Bryan K. Watson

RE: [Full-Disclosure] Sample of Mydoom A B

2004-02-02 Thread Bryan K. Watson
:-) [EMAIL PROTECTED] said: Ok I am a bit late into this game, been caught up doing other work in office and skipped through the whole Mydoom experience. I am hoping someone here has a copy of Mydoom A and B. If so, please contact me off-line. THANK YOU You want MyDoom? I just got 5

RE: [Full-Disclosure] antivirus s/w

2004-01-27 Thread Bryan K. Watson
AV response email is PART OF THE PROBLEM now, not PART OF THE SOLUTION. Especially with virii spoofing the From field now. It just ends up with somebody at random getting the response, which is likely to cause more confusion. The problem is not just antivirus software...the SMTP RFC states that

RE: [Full-Disclosure] Blocking Music Sharing.

2003-10-02 Thread Bryan K. Watson
Title: Message Checkpoint NG with Application Intelligence will look into the stream and block applications like Kazaa. This is their new productrelease level,and they have radically changed their pricing and market focus...so don't assume that they are unaffordable. You can also

RE: [Full-Disclosure] [Fwd: Edwards AFB shut down by W32Blaster] (fwd)

2003-08-19 Thread Bryan K. Watson
beauty, then M$ will wi$ely go where the customer is demanding. That's business. - Bryan K. Watson - netTracers.com - --- Microsoft doesn't really care though... after all most half-wit MCSE's out there would rather have Windows 2000's mouse have a nicer drop shadow to it then being able to figure

RE: [Full-Disclosure] [Fwd: Edwards AFB shut down by W32Blaster] (fwd)

2003-08-19 Thread Bryan K. Watson
, they should make the security point and click too. Cheers, - Bryan K. Watson - netTracers.com ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html

RE: [Full-Disclosure] DCOM Exploit MS03-026 attack vectors

2003-08-01 Thread Bryan K. Watson
Because 9 times out of 10 port 135 is blocked by some sort of firewall, whilst port 80 is not blocked on a web server. Not telecommuters on dial-up IP's and Blue-Toothed into the net thru their Ericsson phones, and surfing from the airport and WIFI cafes of the world. Most Sysadmins are