Hey Michael (and others),

It seems that fwknop clients are able to override the server
FW_ACCESS_TIMEOUT setting by providing their own --fw-timeout value. This is
true for both command line versions and fwknop-gui.

Is this intentional? To me, it is a security issue that users can extend
the firewall rules beyond what I'm trying to enforce.

Thanks in advance for the feedback!

j

------------------------------------------------------------------------------
What NetFlow Analyzer can do for you? Monitors network bandwidth and traffic
patterns at an interface-level. Reveals which users, apps, and protocols are 
consuming the most bandwidth. Provides multi-vendor support for NetFlow, 
J-Flow, sFlow and other flows. Make informed decisions using capacity planning
reports.http://sdm.link/zohodev2dev
_______________________________________________
Fwknop-discuss mailing list
Fwknop-discuss@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/fwknop-discuss

Reply via email to