On Thu, 12 Jul 2001, Russell Aspinwall spewed into the ether:
> Can fingerprinting a Checkpoint FW be made more difficult by using a 
> packet filtering router on the Internet facing interface, so that all 
> the only selected IP addresses can access the ports < 1023.
No. nmap as root on a Linux/BSd machine can scan from ports below 1023,
or it can be made to appear to do so.

Devdas Bhagat
--
Woman inspires us to great things, and prevents us from achieving them.
                -- Dumas
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to