IDS mailing list archives

RE: Session Hijacking


From: "Angel L Rivera" <arivera () mitre org>
Date: Tue, 8 Mar 2005 08:23:16 -0500

Hate to plead ignorance but can you elaborate a little - not familiar with
this control and how to set it up - can you give an example. If you think it
is out of scope for this discussion list just reply to me.  Thanks.

-----Original Message-----
From: Dragos Ruiu [mailto:dr () kyx net] 
Sent: Tuesday, March 08, 2005 2:53 AM
To: Angel L Rivera; 'Mike Frantzen'; 'Terry Ray'
Cc: focus-ids () lists securityfocus com
Subject: Re: Session Hijacking

P.s. Static permanent arp entries for at least some "important" servers 
and gateways in your network is something I counsel all to seriously 
consider. This intermediate step is not that much work given the many
security benefits it brings.

-- 
World Security Pros. Cutting Edge Training, Tools, and Techniques
Vancouver, Canada       May 4-6 2005  http://cansecwest.com
pgpkey http://dragos.com/ kyxpgp




--------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it with real-world attacks from 
CORE IMPACT.
Go to http://www.securityfocus.com/sponsor/CoreSecurity_focus-ids_040708 
to learn more.
--------------------------------------------------------------------------


Current thread: