Bugtraq mailing list archives
Re: NFS exporting
From: mcn () nostromo c3 lanl gov (Michael Neuman)
Date: Wed, 13 Apr 1994 18:26:05 -0600 (MDT)
Well, this is more or less true...mountd can be circumvented (hope i got this right) and one can send direct rpc/nfs requests to the nfsd...the hard part is actually guessing a valid file handle (32 byte number!). I have read in some documents that regular use of fsirand, a program which supposedly assigns to each file/dir a unique file handle, greatly reduces chances of a wild guess...There are techniques you can exploit here that make hijacking an NFS partition or simply destroying it way too simple.
Name a few Perry, that's what bugtraq is for... Generally alluding to techniques is worthless. -Mike
Current thread:
- NFS exporting Scott D. Yelich (Apr 13)
- Re: NFS exporting Perry E. Metzger (Apr 13)
- Re: NFS exporting Mike Evans (Apr 13)
- Re: NFS exporting Aggelos D. Keromitis (Apr 13)
- Re: NFS exporting Perry E. Metzger (Apr 13)
- Re: NFS exporting Michael Neuman (Apr 13)
- Re: NFS exporting Perry E. Metzger (Apr 14)
- Re: NFS exporting Paul Graham (Apr 14)
- Re: NFS exporting Perry E. Metzger (Apr 15)
- Re: NFS exporting Perry E. Metzger (Apr 13)
- <Possible follow-ups>
- Re: NFS exporting smb () research att com (Apr 13)
- Re: NFS exporting Carl Corey (Apr 13)
- Re: NFS exporting Perry E. Metzger (Apr 14)
- Re: NFS exporting Rob Quinn (Apr 14)
- Re: NFS exporting Perry E. Metzger (Apr 14)
- Re: NFS exporting Perry E. Metzger (Apr 14)
- Re: NFS exporting Aggelos D. Keromitis (Apr 14)