Full Disclosure mailing list archives

Re: Sony: No firewall and no patches


From: phocean <0x90 () phocean net>
Date: Wed, 11 May 2011 22:49:14 +0200

Le mercredi 11 mai 2011 à 17:40 +0000, Dobbins, Roland a écrit :
On May 12, 2011, at 12:31 AM, phocean wrote:

When I look at the specs of high end machines of most makers, they are and they outmatch most of x64 servers.


<http://urbanairship.com/blog/2010/09/29/linux-kernel-tuning-for-c500k/>

Nice but not very precise : nature of packets, fragmentation, sessions,
bandwidth, etc.
Anyway, most appliances run a version of Linux or some BSD, so there is
potentially not much difference with an appliance.

To go back to my point: an application server (IIS, Apache) cannot
sustain as many connections as a firewall (of course in a sane and
standard environment).
So you cannot tell that a firewall will increase the risk of DoS.

From what I have seen so far as arguments, I think the discussion is
over.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: