sherwin Lu <[EMAIL PROTECTED]> writes:

> A tech ran a Nessus scan against my Linux machine
> protected that is by iptables.  His scan reported all
> the ports that should have been filtered as open. 

What scan did he use? NULL scan, XMAS, FIN and FINSYN are likely to
report filtered ports as "open".

> 2. How does Nessus get past iptables?

It probably does not, unless you did not use the stateful filtering options.

Reply via email to