On Saturday 02 March 2002 20:19, Matt Schalit wrote:

> > No, you are correct that the default setting doesn't. To change the
> > settings on the the filtering, edit the line in "/etc/network.conf"
> > from the setting "firewall" to "none" (sans quotes). This setting
> > leaves you with no filtering, only routing. I highly suggest not
> > doing this unless you like getting hacked or cleaning the Nimba
> > worm off of your Win32 boxes, but this is a choice you can make for
> > yourself.
>
>    I'm not sure what you mean by this.  There are no services
> running on DF that listen on the external nic.  So lowering
> the firewall rules allows access to all the ports, but to what?
>
>    There are no ports forwarded into the internal network by default,
> so there won't be any server for nimbda to attack.  Did I miss
> something?  It's possible, as I don't boot DF too often.

 Matthew,

You are right, by default there are not any readily exploitable
services running on the external interface. That is to assume a default
setting. If we are to assume the possibilities that _could_ be run
with DCD on the external interface or any port_forward's that many
people _are_ running, I felt it was worth while to add the disclaimer. 
I should have been more clear in this disclaimer, but I sure don't
suggest turning the filtering ruleset off in any case if connected 
directly to the internet.

Thx Matt!
-- 

~Lynn Avants
aka Guitarlynn

guitarlynn at users.sourceforge.net
http://leaf.sourceforge.net

If linux isn't the answer, you've probably got the wrong question!

_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to