There was a message in this forum a short while ago that suggested that
it would be appropriate to ensure that you only accept packets that are
actually addressed to you.
And the author suggested a rule to accomodate same:
ipchains -A input -i ppp0 -d ! YourIpAddr/32 -j DENY -l
Whilst I understand the meaning, is it _ever_ possible that an interface
would ever receive packets that were not addressed to it?
By my thinking, an exploit that took advantage of this would have to do
some serious munging of the routers in between to get them through to
you.
comments please?
--
Regards
Luke
----
Those who cannot remember the past are condemned to repeat it.
George Santayana (1863 - 1952), The Life of Reason, Volume 1, 1905
----
http://www.bell-bird.com.au
PLEASE NOTE: Spamgard (tm) installed.
----