Security Basics mailing list archives

Re: IPS vs Firewall


From: Ansgar -59cobalt- Wiechers <bugtraq () planetcobalt net>
Date: Sat, 8 May 2004 15:35:42 +0200

On 2004-05-05 Cutequyz wrote:
another thing, the interface should be invisible (can't be ping adn
detected by port/ip scanner, even from your inside)

*sigh*

The interface is *not* invisible, regardless whether it does respond to
ICMP echo-requests or not. Please read up on how IP works. If the last
router doesn't respond with something like host-unreachable or network-
unreachable, you know that the host is in fact there.

Regards
Ansgar Wiechers

---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: