Re: Linux port of pf

2004-10-20 Thread Sigfred Håversen
On Wednesday 20 October 2004 00.06, Ed White wrote: > On Tuesday 19 October 2004 22:08, Ed wrote: > > Has anyone ported pf for use on linux kernels? I like the firewall so > > much I want to use it on the debian systems. > > ..and maybe releasing it under GPL... I think that GPL has ticked off mo

Re: your mail

2004-07-29 Thread Sigfred Håversen
On Thursday 29 July 2004 13.05, Rod.. Whitworth wrote: > > I agree with jared on this and would like to suggest that NAV running > on the WinClient is the worst dumb POS I have ever had this misfortune > to have to deal with. It can only do the most elementary smtp and pop > transactions and fails

Re: pf.os and W98 & filezilla

2004-06-08 Thread Sigfred Håversen
On Tuesday 08 June 2004 18.42, [EMAIL PROTECTED] wrote: > Hello, > > I wanted the solution from add in pf.os, the fingerprint from W98 and > Filezilla, it's possible ? > > My pf.conf: > > [...] > block in quick from any os "unknown" > > [...] > You'll block more than you intended. /Sigfred

Re: Identical MAC addresses, 2 different systems

2004-03-18 Thread Sigfred Håversen
On Thursday 18 March 2004 21.28, Kirk Ismay wrote: > Slightly off topic, but has anyone ever seen 2 separate systems with > the same MAC address? I thought this was a "never supposed to > happen" kind of thing as MAC's are supposed to be globally unique. > However, I've had this happen twice now w

Re: About using reassemble tcp/modulate state

2003-12-13 Thread Sigfred Håversen
On Saturday 13 December 2003 01:46, Daniel Hartmeier wrote: > On Sat, Dec 13, 2003 at 01:51:49AM +0200, Toni Riekkinen wrote: > > What is the difference between using "scrub all reassemble tcp" and using > > "modulate state" in incoming traffic rules, i.e for webserver in DMZ: > SNIP > So, these a

Re: "reassemble tcp" and SuSE clients woe

2003-11-11 Thread Sigfred Håversen
On Tuesday 11 November 2003 08:51, Omer Faruk Sen wrote: > I have lived a problem with Suse and Windows Servers. The problem is > exactly the same with tne one detailed at > http://www.benzedrine.cx/pf/msg03194.html. I have a mail server that is > installed SUSE as OS with 2.4.19-4GB kernel and my

Re: Why does it hang with reassemble tcp?

2003-09-23 Thread Sigfred Håversen
On Tuesday 23 September 2003 01:25, Mike Frantzen wrote: > can you try this? one gentleman had this same problem and initially > responded that this diff fixed it. i think he responded again later but > i'm a few hundred emails behind right now (congrats, you were the first > email in my inbox wh

Re: "reassemble tcp" and SuSE clients woe

2003-09-08 Thread Sigfred Håversen
On Monday 08 September 2003 22:59, Trevor Talbot wrote: > On Monday, Sep 8, 2003, at 13:12 US/Pacific, Sigfred Håversen wrote: > > Not sure if this should be reported as a bug or not, so please bear > > with me. > > > > A "scrub on $ext_if reassemble tcp" will

"reassemble tcp" and SuSE clients woe

2003-09-08 Thread Sigfred Håversen
Not sure if this should be reported as a bug or not, so please bear with me. A "scrub on $ext_if reassemble tcp" will deny some SuSE clients access to some Microsoft IIS webservers. This appears to be an issue with SuSE's latest kernel (2.4.20-100) only. I'm not sure it it's the IIS servers the

Re: Stupid Question

2003-07-11 Thread Sigfred Håversen
On Friday 11 July 2003 19:53, Jolan Luff wrote: > On Fri, Jul 11, 2003 at 01:30:34PM -0400, Michael W . Lucas wrote: > > A port to Windows would not be feasible. And while I would not > > wish to speak for our esteemed developers, I think I'm fairly safe > > in saying that they would not be intere

Re: fastroute

2003-06-04 Thread Sigfred Håversen
On Tuesday 03 June 2003 19:45, Ed White wrote: > On Monday 02 June 2003 21:24, Dries Schellekens wrote: > > ttl Neither side of the connection is allowed to reduce > > their IP TTL. An attacker may send a packet such that it reach- es > > the firewall, affects the firewall state, and ex