Mailinglist Archive


Packet Crafting for Firewall & IDS Audits (Part 1 of 2)
From:Joe Klemmer
Date: Fri, 20 Aug 2004 00:42:52 -0400

Packet Crafting for Firewall & IDS Audits (Part 1 of 2)
by Don Parker
last updated June 28, 2004

With the current threat environment that home and corporate users face
today, having a firewall and IDS is no longer a luxury, but rather a
necessity. Yet many people do not really take the time to make sure
though that these lines of defense are indeed working properly. After
all, it is very easy to invalidate your router's entire ACL list by
making a single misconfigured entry. The same can be said for your
firewall, whereby one poor entry into your iptables script, for example,
could leave you vulnerable. Have you properly configured certain options
which may be available with your firewall? All of these questions can be
answered, and more importantly verified through the use of packet
crafting. What this will allow you to do is manually verify that all is
working well with your firewall and IDS, and that each is properly
configured.

http://www.securityfocus.com/infocus/1787

-- 
Joe Klemmer 
Unix System/Network Administrator & Ad Hoc Programmer