Full Disclosure mailing list archives
Re: Sidewinder G2
From: Valdis.Kletnieks () vt edu
Date: Tue, 18 Nov 2003 11:20:06 -0500
On Tue, 18 Nov 2003 09:49:52 CST, "Perrymon, Josh L." said:
The cisco PIX doesn't run the actual SMTP service. The problem would be in the Fixup for the SMTP protocol.
Hmm.. so we *don't* actually do SMTP, we merely screw with the bits in passing even more than an actual SMTP relay would do (as it would just slap on a Received: and keep going). It answers a SYN packet on port 25, it sends a distinctive '220 hello' reply different than what might be behind it, it accepts EHLO/MAIL FROM/RCPT TO/DATA/QUIT, it isn't merely tunneling packets to a server behind the firewall. Pedantic sophistry at its best. It's an SMTP server, guys. Looks like a duck, quacks like a duck, and slapping a "this is a Fixup not a Server" label on it isn't gonna remove the duck feathers.
Attachment:
_bin
Description:
Current thread:
- My take on the Newly discovered Exchange Flaw, (continued)
- My take on the Newly discovered Exchange Flaw Lan Guy (Nov 18)
- Re: Sidewinder G2 Valdis . Kletnieks (Nov 18)
- Message not available
- Message not available
- Message not available
- Message not available
- Re: Sidewinder G2 Michael Gale (Nov 18)
- Re: Sidewinder G2 Valdis . Kletnieks (Nov 18)
- Message not available
- Message not available
- Re: Sidewinder G2 Michael Gale (Nov 18)
- RE: Sidewinder G2 Ron DuFresne (Nov 20)
- Re: Sidewinder G2 Valdis . Kletnieks (Nov 18)
- Re: Sidewinder G2 Michael Gale (Nov 18)
- RE: Sidewinder G2 Brent J. Nordquist (Nov 18)
- Re: Sidewinder G2 David Maynor (Nov 18)
- Re: Sidewinder G2 Brent J. Nordquist (Nov 18)
- Re: Sidewinder G2 Valdis . Kletnieks (Nov 18)
- Re: Sidewinder G2 David Maynor (Nov 18)