Firewall Wizards mailing list archives

Re: DNS Names for external services


From: Morty <morty+fw-wiz () frakir org>
Date: Fri, 23 Apr 2010 09:02:04 -0400

On Sat, Apr 17, 2010 at 10:50:31AM -0500, Frank Knobbe wrote:

Likewise, if you don't run an FTP server (or CVS, or POP3, or...),
setup DNS records for those pointing to your honeypot. Use it to
respond in anyway you see fit for defense of your network (blocking
the IP, etc).

What happens when one of your legit users says "I wonder if we have an
FTP server?" and tries ftp.$YOURCOMPANY.com just to see if it answers?

- Morty
_______________________________________________
firewall-wizards mailing list
firewall-wizards () listserv icsalabs com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: