Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: Loopback and multi-homed routing flaw in TCP/IP stack.

Re: Loopback and multi-homed routing flaw in TCP/IP stack.

From: Dan Harkless <dan-bugtraq_at_DILVISH.SPEED.NET>
Date: Tue, 6 Mar 2001 11:26:09 -0800

Perry Harrington <pedward_at_WEBCOM.COM> writes:
> I don't think the behavior should change because of DSR. DSR is more
> useful than 'rightness' in my opinion. A switch to turn it off if you
> don't want it is something I'd advocate, but the default should be 'on'.

Why? Using direct service return is the unusual case. People who're doing
load-balancing already need to do complex configuration -- what's so big
about also having to turn on a flag to use the Weak ES Model? If you can
make the average system more secure by making Strong ES the default, why not
do so?

----------------------------------------------------------------------
Dan Harkless | To prevent SPAM contamination, please
dan-bugtraq_at_dilvish.speed.net | do not mention this private email
SpeedGate Communications, Inc. | address in Usenet posts. Thank you.
Received on Mar 06 2001

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos