|
|||||||||||
|
Re: Understanding Firewall-1 Configs
From: theog <theog(at)theog.org>
Date: Sun Jan 12 2003 - 11:43:35 EST I'll start from the end - :) to scan with no ping , you can use: nmap -P0 -sT %ip subnet% %ipsubnet%= the subnet you want to scan i.e. 192.168.0.0/24 (while 24 is the number of network asigned bits). To the more complex section for you my friend , I would not use Windows systems infront of the internet , let alone checkpoint firewall-1 4.1 SP1 - Upgrade to NG (or at least SP6). You should not fear of an attack taking down the firewall , as I see it it will be much simpler to exploit what your firewall doesnt check - port 53 to the DNS server (check for microsoft DNS exploits) port 80 and 443 on your web server (check for IIS exploits). I would recommend using Nessus (at www.nessus.org) to check for vuln. of your machines. TheOg amy_morgan@hushmail.com wrote: >-----BEGIN PGP SIGNED MESSAGE-----
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:03:36 EDT |
||||||||||
|
|||||||||||