Robert Bonomi wrote:
<>*HOW* is one supposed to tell a 'benign' probe from a 'hostile' one, when it is addressed to a machine that doesn't exist, or to a 'service' that doesn't exist on an existant machine?
With all the 'overtly hostile' traffic out there, why on earth would anyone
consider that, with regard to 'unexpected'/'abnormal' traffic, there should
be _any_ 'expectation of innocence'?
Easy, they need to set the evil bit to 0 ;)
begin:vcard fn:Matt Hess n:Hess;Matt org:LiveWireNet adr;dom:;;4577 Pecos St;Denver;CO;80211 email;internet:[EMAIL PROTECTED] title:Senior Network Engineer tel;work:303-458-5667 tel;fax:303-458-5725 x-mozilla-html:FALSE url:http://www.livewirenet.com/ version:2.1 end:vcard
