Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

Re: Question
From: Frank Knobbe <frank () knobbe us>
Date: Fri, 21 Oct 2005 19:44:25 -0500

On Fri, 2005-10-21 at 18:36 -0200, Rodrigo Barbosa wrote:
The IRC protocol is very easy to identify.
I would suggest blocking the protocol itself, regardless of the port.

Right. Unless it runs over SSL, then it's a bit harder to identify,
wouldn't you agree?

Cheers,
Frank

PS: Yes, there are bots that are running IRC over SSL, so no "No one
does it" comments please.

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]