hi all,
I am trying to have a better understand in stateful
inspection. My setup is;
client-------FW (simple:)
Firewall-1 rule is: any any accept
I have established an session to port 1346(with
netcat). 3 way hand-shake established and connection
located in the state table.
Then I send ACK packets with wrong sequence and
acknowledge numbers. Firewall drops the packets.(seems
right for me)
When I read Lance white papers (firewall-1 state
table) he says Firewall-1 would accepts packets(ACK). 
But they do not.
I have tried several times. All same. 
Is this document older. (in fact it is a litlle old
november 2000)
Any thought.



__________________________________________________
Do You Yahoo!?
Send your FREE holiday greetings online!
http://greetings.yahoo.com
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to