Firewall Wizards mailing list archives
Re: war dialers, are they a current threat?
From: "S. Jonah Pressman" <jonah () istar ca>
Date: Wed, 22 Dec 1999 20:09:53 -0500
"R. DuFresne" wrote:
Do folks here consider war dialers a real threat in this day in age?
Absolutely. It's always gratifying when a small-time hack wakes in the morning to find that his war dialer/tone locater has found an array of machines just waiting to answer and serve up information via PCAnywhere, Laplink, telnet, etc. etc.
How would others respond to a request in install a modem for dialup access to a server that one cannot secure becuase: 1) There's no compiler to install tools to try and secure the system 2) You are supposed to make this soft chewy available to the whole inside network Being that your pbx has no dialback feature, what's the best way to protect such a setup, if there is one?
A good IPsec VPN solution with certificate authentication may be the order of the day. Properly configured, the user can simply and securely dial up to his/her ISP, invoke the appropriate VPN client policies, and - presto.... enrypted and 3rd party (CA) authenticated access to the corporate network.
Thanks, Ron DuFresne -- ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ admin & senior consultant: darkstar.sysinfo.com http://darkstar.sysinfo.com "Cutting the space budget really restores my faith in humanity. It eliminates dreams, goals, and ideals and lets us get straight to the business of hate, debauchery, and self-annihilation." -- Johnny Hart testing, only testing, and damn good at it too!
------------ 'ome is where you hang your @ -----------------
Current thread:
- ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 20)
- Re: ipchains FW, monitoring for scans, & how to react to them R. DuFresne (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them R. DuFresne (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Crispin Cowan (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Crispin Cowan (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 21)
- war dialers, are they a current threat? R. DuFresne (Dec 22)
- Re: war dialers, are they a current threat? S. Jonah Pressman (Dec 24)
- RE: war dialers, are they a current threat? Joseph Judge (Dec 26)
- Re: war dialers, are they a current threat? Dorian Moore (Dec 28)
- Re: ipchains FW, monitoring for scans, & how to react to them Danny Rathjens (Dec 21)
- Message not available
- Re: war dialers, are they a current threat? Eric Budke (Dec 24)
- Re: ipchains FW, monitoring for scans, & how to react to them R. DuFresne (Dec 21)
- <Possible follow-ups>
- Re: ipchains FW, monitoring for scans, & how to react to them Thom Dyson (Dec 21)
- Re: ipchains FW, monitoring for scans, & how to react to them cbrenton (Dec 23)
- Re: ipchains FW, monitoring for scans, & how to react to them Robert Graham (Dec 22)