What ports should be stealthed?  | | |
August 15th, 2002, 12:06 AM
|
#1 (permalink)
| | Senior Member
Join Date: Jan 2002 Location: ThirdWorld- Montana
Posts: 608
| What ports should be stealthed?
Im learning iptables and have come up with a basic script that stealths ports (though its really crude lol)
The ports I have taken care of so far are (basically all the ones at shields up):
21
23
25
79
110
113
135
139
143
443
445
5000
The question is what others need to be stealthed?
Might be the wrong forum for this---regardless. Thanks guys
Last edited by flashingcurser : August 15th, 2002 at 12:08 AM.
|
| |
August 15th, 2002, 12:16 AM
|
#2 (permalink)
| | A hero in training
Join Date: Oct 2001 Location: Norfolk, VA
Posts: 26,858
| |
| |
August 15th, 2002, 12:21 AM
|
#3 (permalink)
| | |
Sygate offers a series of port scans for you and tell you the status of all your ports. Works for me with Smoothwall! http://scan.sygatetech.com/
Cheers
Mick | |
| |
August 15th, 2002, 01:10 AM
|
#4 (permalink)
| | Senior Member
Join Date: Jan 2002 Location: ThirdWorld- Montana
Posts: 608
|
Wow that was fast! Thanks guys going there as I type  |
| |
August 15th, 2002, 01:19 AM
|
#5 (permalink)
| | Senior Member
Join Date: Jan 2002 Location: ThirdWorld- Montana
Posts: 608
|
GroundZero I'm book marking that for life!
Mick, sygate's scan found my browser (galeon) and found I have SSH running. Is this a problem?
Again thanks  |
| |
August 15th, 2002, 01:40 AM
|
#6 (permalink)
| | |
It found my browser as well through my smoothwall box. Dunno if this is as issue; it still finds it when I have SPF on full, so I doubt a firewall can stop it. I think your browser sends stuff to identify itself to websites. Unless you don't connect to the web with a browser, I think it can be detected easily.
Cheers
Mick | |
| |
August 15th, 2002, 06:45 AM
|
#7 (permalink)
| | Registered User
Join Date: Oct 2001
Posts: 4,097
| |
| |
August 15th, 2002, 07:36 AM
|
#8 (permalink)
| | Ultimate Member
Join Date: Oct 2001 Location: Antibe.Fr+Vegesak.De
Posts: 1,360
|
__________________
Cheers
Nodnerb2:D
|
| |
August 15th, 2002, 08:34 AM
|
#9 (permalink)
| | Member
Join Date: Jul 2002 Location: London, England
Posts: 100
|
Mickwish -- you are correct to point out that browser and OS can be identified over the web. It isn't really an issue (for me, anyway) but can be blocked using something like Sygate PF Pro, which has a 'stealth browsing' option. However, some sites will just refuse to work in this mode, and others may show unexpected results.
(and I'm not sure it's enough to justify the cost of SPF pro...)
nodnerb2 -- is the error message over the web, or is it a dialog box? (the link doesn't work, but I suppose it isn't meant to be a link) |
| |
August 15th, 2002, 09:49 AM
|
#10 (permalink)
| | Ultimate Member
Join Date: Oct 2001 Location: Antibe.Fr+Vegesak.De
Posts: 1,360
|
Hi,
It is a little dialog box. The http address is along the top strip.
Cheers
Nodnerb2 |
| | | Thread Tools | Search this Thread | | | | |
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | | | | Most Active Discussions | | | | | Recent Discussions  | | | | | |