Depending on what else is there as a service that you have the port open,
the real benefit may or may not be realized.

Stealth is good if you don't have services running, since then it doesn't
look like anything even exists at that IP.  All it really does is keep
people from knowing something is there.  

But if you have any other services running (web, ftp, whatever) and someone
scans that IP, they're going to know that something exists at that IP
whether or not the unused ports are stealthed.

I've never heard of any reason *not* to enable it, so on my pro VX it's
turned on, even though port 21 and 80 are obviously open.  I figure failing
all else, maybe some script kiddie out there may only scan a few not often
used ports to find something he's set up to try to exploit, so if they show
as stealth he might just pass by the IP.

Hope this helps.

John



-----Original Message-----
From: Kevin Bachelder [mailto:[EMAIL PROTECTED]] 
Sent: Monday, January 28, 2002 10:21 AM
To: [EMAIL PROTECTED]
Subject: [SonicWALL]- Stealth Mode

Hi all,

We are using a SOHO50 with Firmware version: 5.1.7.0.  On the Access > 
Services page there is an option called  Stealth Mode.  The help system 
describes this as...


By default, the SonicWALL Internet Security Appliance responds to incoming 
connection requests as either "blocked" or "open". If you enable Stealth 
Mode, no response will be made to inbound requests, thereby making your 
network "invisible" to potential attackers.


Is there any reason why I should NOT enable this option.

Thanks in advance,

Kevin


------------------
Kevin Bachelder

Microsoft Certified Systems Engineer - Windows NT 4.0 (MCSE)
Microsoft Certified Professional - Windows 2000 (MCP)
Citrix Certified Administrator (CCA)
CompTIA A+ Certified Computer Repair Technician (A+)

---
[This E-mail scanned for viruses by Declude/F-Prot Virus]

============================================================================
=======================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the email
put the following: unsubscribe sonicwall your_name
The archive of this list is at
http://www.mail-archive.com/sonicwall%40peake.com/

---
[This E-mail scanned for viruses by Declude/F-Prot Virus]

===================================================================================================
To unsubscribe, send email to [EMAIL PROTECTED] In the body of the email put the 
following: unsubscribe sonicwall your_name
The archive of this list is at http://www.mail-archive.com/sonicwall%40peake.com/


Reply via email to