|
|||||||||||
|
Port scan detection with pf
From: Holger Burde <HBurde(at)t-online.de>
Date: Sat Nov 30 2002 - 12:45:35 EST
I found that iptables has (via patch-o-matic) a option to build a Portscan detection Module (psd) which blocks scanning hosts (nmap etc.) for some time and efficiently makes auto-scanning sort of impossible. Is this also possible with OpenBSD pf or is it planed to add this feature ? (from man faq google etc. it seems not) PS The Watchguard Firewalls also have such a feature which is turned on by default. IDS would see them ... hb Received on Sat Nov 30 12:45:59 2002 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:31:48 EDT |
||||||||||
|
|||||||||||