1) SuSEfirewall2 does not stealth port 113 but rather shows the port as closed. Is there a simple remedy for this or must we accept it as is? 2) I have not dug into any docs just yet but is there a doc somewhere that explains the output format for firewall log items? 3) Does anyone know of a port scanner (online/free) that will do the full range of ports not just the most common? Appreciate the help! kev
3) Does anyone know of a port scanner (online/free) that will do the full range of ports not just the most common?
Nmap and NmapFE ("FE" is the gui for Nmap, a CLI port scanner) http://www.insecure.org/ Linux and Windows versions available. -- John LeMay KC2KTH Senior Enterprise Consultant NJMC | http://www.njmc.com | Phone 732-557-4848 Specializing in Microsoft and Unix based solutions
On Wed, 5 Feb 2003 09:23:45 -0600
Kevin Wilson
1) SuSEfirewall2 does not stealth port 113 but rather shows the port as closed. Is there a simple remedy for this or must we accept it as is?
Look at the script /sbin/SuSEfirewall2, search thru it for 113. You will see where you can change it to make it stealthmode. -- use Perl; #powerful programmable prestidigitation
On Wed, 2003-02-05 at 16:23, Kevin Wilson wrote:
1) SuSEfirewall2 does not stealth port 113 but rather shows the port as closed. Is there a simple remedy for this or must we accept it as is?
Trust me, you don't want a DROP rule for port 113. It would slow things down greatly. some things would even break completely, with certain mail servers for instance. You're not invisible on the net even with everything "stealthed" anyway so it really doesn't matter Anders
* Kevin Wilson;
1) SuSEfirewall2 does not stealth port 113 but rather shows the port as closed. Is there a simple remedy for this or must we accept it as is?
2) I have not dug into any docs just yet but is there a doc somewhere that explains the output format for firewall log items?
check http://sf.net/projects/susefaq for the unofficial SuSEfirewall2 documentation both of the above questions are explained
3) Does anyone know of a port scanner (online/free) that will do the full range of ports not just the most common?
Nessus Nmap -- Togan Muftuoglu Unofficial SuSE FAQ Maintainer http://dinamizm.ath.cx
participants (6)
-
Anders Johansson
-
John LeMay
-
Kevin Wilson
-
Martijn van den Burg
-
Togan Muftuoglu
-
zentara