Bugtraq mailing list archives

Re: finger-bombing


From: mch () sqwest bc ca (Mark C. Henderson)
Date: Fri, 14 Oct 1994 19:51:57 -0700


I was just wondering with all this finger hassle that's been going on, 
isn't there a way that an admin can figure out who is the actual user who 
actually fingered the attacked host? Isn't there some sort of identifying 
daemon that would get the name of the guy that fingered the attacked host?
I thought I saw an RFC on something like this, or am I wrong? 
Tnx for any replies to this one...

yea it is called identd, I have modified my rlogin, telnet, ftpd & popper
servers to do identd queries on all connections.  

      -Pete


-- 
Mark Henderson, SoftQuad Inc., 108-10070 King George Hwy, Surrey, B.C. V3T 2W4
Internet: mch () sqwest bc ca, markh () wimsey bc ca          Voice: +1 604 585 8394
Fax: +1 604 585 1926    RIPEM MD5OfPublicKey: F1F5F0C3984CBEAF3889ADAFA2437433
ViaCryptPGP Key fingerprint = C4 EC 2F 6C 1B ED F6 06  1D E9 08 E4 E5 F9 FA 16 



Current thread: