I just want to get this right, with mlp you can now send from a lower 
classification to a port in a higher classification. Here is what I am trying 
to do with the tnzonecfg mlp settings. 
restricted:0x0005-08-78:1:22/tcp;513/tcp:22/tcp 
I am trying to use ssh to test the oracle connection, before I load oracle. I 
can ssh from public to public and restricted to restricted, but not public to 
restricted.  I did stop the ssh service in the public zone before trying to 
connect. 
I thought about using netcat to run a listener on port 1521 (oracle port) and 
try to connect and send a shell back to the public client. I am sending the 
tnzonecfg file that I am using to do this. If you can point me in the right 
direction that will help.
 
 
This message posted from opensolaris.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: tnzonecfg
Type: application/octet-stream
Size: 1573 bytes
Desc: not available
URL: 
<http://mail.opensolaris.org/pipermail/security-discuss/attachments/20060905/b1b49965/attachment.obj>

Reply via email to