Bugtraq mailing list archives

Proxy+ Telnet Gateway Problems


From: wizdumb () UNIX ZA NET (Andrew Lewis)
Date: Mon, 26 Jun 2000 19:58:20 +0200


The Problem:
------------
Many admins who use Proxy+ configure the remote administration port (which
works over HTTP) to only accept connections from the localhost.
Fortunately enough, the admin port doesn't allow connections which have
been bounced through the HTTP proxy. The telnet proxy, on the other hand,
is a different story. Oops.

Workaround:
-----------
Enable HTTP Basic authentication instead. And don't trust localhost only
security for anything.

Credit:
-------
Andrew Lewis aka. Wizdumb, One of the many losers from the MDMA crew
<www.mdma.za.net>


Current thread: