Always correcting me when I'm wrong :)

You're right Dave...  The definition of IP Spoofing as that article writes
is that you actually disguise your IP address within the TCP packet...

I was more concentrating the cgi.remote_addr variable than the "spoofing"
part of the question...  I just used the wrong words...  To rephrase...
It's possible to "mask" your IP...

:)

-----Original Message-----
From: Dave Watts [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, May 22, 2002 1:01 PM
To: CF-Talk
Subject: RE: Setting CGI.REMOTE_ADDR


> It's not as hard as you think... The easiest way to spoof
> your IP is to go through a proxy. There's tonnes of open 
> proxies on the internet you can use to spoof your IP.
> 
> For example:
> http://www.freedom.net/products/websecure/

While the use of a proxy might solve the original poster's problems, that's
not the same thing as spoofing your IP address:
http://rr.sans.org/threats/intro_spoofing.php

Dave Watts, CTO, Fig Leaf Software
http://www.figleaf.com/
voice: (202) 797-5496
fax: (202) 797-5444

______________________________________________________________________
Get the mailserver that powers this list at http://www.coolfusion.com
FAQ: http://www.thenetprofits.co.uk/coldfusion/faq
Archives: http://www.mail-archive.com/[email protected]/
Unsubscribe: http://www.houseoffusion.com/index.cfm?sidebar=lists

Reply via email to