Packet Crafting for Firewall & IDS Audits (Part 1 of 2) | |
From: | Joe Klemmer |
Date: | Fri, 20 Aug 2004 00:42:52 -0400 |
Packet Crafting for Firewall & IDS Audits (Part 1 of 2) by Don Parker last updated June 28, 2004 With the current threat environment that home and corporate users face today, having a firewall and IDS is no longer a luxury, but rather a necessity. Yet many people do not really take the time to make sure though that these lines of defense are indeed working properly. After all, it is very easy to invalidate your router's entire ACL list by making a single misconfigured entry. The same can be said for your firewall, whereby one poor entry into your iptables script, for example, could leave you vulnerable. Have you properly configured certain options which may be available with your firewall? All of these questions can be answered, and more importantly verified through the use of packet crafting. What this will allow you to do is manually verify that all is working well with your firewall and IDS, and that each is properly configured. http://www.securityfocus.com/infocus/1787 -- Joe KlemmerUnix System/Network Administrator & Ad Hoc Programmer