Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: Understanding Firewall-1 Configs

From: theog <theog(at)theog.org>
Date: Sun Jan 12 2003 - 11:43:35 EST

I'll start from the end - :)

to scan with no ping , you can use: nmap -P0 -sT %ip subnet% %ipsubnet%= the subnet you want to scan i.e. 192.168.0.0/24 (while 24 is the number of network asigned bits).

To the more complex section for you my friend , I would not use Windows systems infront of the internet , let alone checkpoint firewall-1 4.1 SP1 - Upgrade to NG (or at least SP6).

You should not fear of an attack taking down the firewall , as I see it it will be much simpler to exploit what your firewall doesnt check - port 53 to the DNS server (check for microsoft DNS exploits) port 80 and 443 on your web server (check for IIS exploits).

I would recommend using Nessus (at www.nessus.org) to check for vuln. of your machines.

TheOg

amy_morgan@hushmail.com wrote:

Do you need help?X

>-----BEGIN PGP SIGNED MESSAGE-----
Received on Tue Jan 21 01:06:33 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:03:36 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library