Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Firewalls
[Top] [All Lists]

Re: information form the firewalls.

Subject: Re: information form the firewalls.
Date: 23 Aug 2004 22:37:40 +0200
El miÃ, 18 de 08 de 2004 a las 10:02, gawtam raiy kallychurn escribiÃ:
Hi can anyone help me please.

 

Information concerning the Mail service name and its version, SMTP,
Reachable Host list, Traceroute information, target network
information, ISP information, Open TCP list, firewall detection are
listed through remote system. What should be done on the router or
firewall to prevent such information to be available from remote
system on the Internet?

 

Thanks to all who can help me.

 

Gawtam Raiy Kallychurn

IT Security Engineer

Financial Intelligence Unit - Mauritius

3rd Floor, Travel House

Cnr Royal and Sir William Newton Streets

Port Louis

Mauritius

----------------------------------------------------------------------------------------

Internet Email Confidentiality Footer

Priviledged / confidential information may be contained in this
message. If you are not the addressee indicated in this message (or
responsible for delivery of the message to such person), you may not
copy or deliver this message to anyone. In such case, you should
destroy this message, and notify the sender immediately. If you or
your employer does not consent to Internet email messages of this
kind, please advise the sender immediately. Opinions, conclusions and
other information expressed in this message are not given or endorsed,
unless otherwise indicated by an authorised means independent of this
message.

Mail service name: Use your sendmail/postfix/etc config files to change
it. If it's possible don't use your firewall as SMTP server.

Reachable Host List/Traceroute: Can be stopped stoping ICMP packets,
depends on your firewall.

Target network information: Stop all the ICMP packets that can trace
your network or hosts. Depends on your configuration.

ISP information: Difficult. If they know your IP they can do a Whois
and know wich ISP you are using. They can send you packets and use p0f
to do this. But don't worry much about it.

Open TCP list: If you close all the ports and only open the ones you
need you don't have to worry about portscans. But it's almost impossible
to stop an attacker to see your open ports with tools like nmap.

Hope it helps.
 
-- 
Jose Maria Lopez Hernandez
Director Tecnico de bgSEC
jkerouac@bgsec.com
bgSEC Seguridad y Consultoria de Sistemas Informaticos
http://www.bgsec.com
ESPAÃA

The only people for me are the mad ones -- the ones who are mad to live,
mad to talk, mad to be saved, desirous of everything at the same time,
the ones who never yawn or say a commonplace thing, but burn, burn, burn
like fabulous yellow Roman candles.
                -- Jack Kerouac, "On the Road"

<Prev in Thread] Current Thread [Next in Thread>