I just want to get this right, with mlp you can now send from a lower
classification to a port in a higher classification. Here is what I am trying
to do with the tnzonecfg mlp settings.
restricted:0x0005-08-78:1:22/tcp;513/tcp:22/tcp
I am trying to use ssh to test the oracle connection, before I load oracle. I
can ssh from public to public and restricted to restricted, but not public to
restricted. I did stop the ssh service in the public zone before trying to
connect.
I thought about using netcat to run a listener on port 1521 (oracle port) and
try to connect and send a shell back to the public client. I am sending the
tnzonecfg file that I am using to do this. If you can point me in the right
direction that will help.
This message posted from opensolaris.org
-------------- next part --------------
A non-text attachment was scrubbed...
Name: tnzonecfg
Type: application/octet-stream
Size: 1573 bytes
Desc: not available
URL:
<http://mail.opensolaris.org/pipermail/security-discuss/attachments/20060905/b1b49965/attachment.obj>