Security Incidents mailing list archives

Scanning. Is it dangerous?


From: KrivickasS () PASTAS KAM LT (Sarunas Krivickas)
Date: Sat, 29 Apr 2000 17:12:54 +0200


Hi folks,

As I see, almost everyone there are worried about some kind of scanning for
own subnets, ports, etc. Do you think it is real danger to you system? So if
it is true, the scans as a dangerous actions has to be recognized in your
risk management and IT security policy. Does the simple scan of your system
has the right place in your policy and also is the trigger to initiate
actions and rise the alarm? Of course, we are able to recognize DoS or
something like that, but almost all incidents there are talking about
simple, usual and not dangerous actions. Yes, you have to think about this
kind of actions (I do not call it as attack) if your system is totally
unprotected.
Lets go to discuss a little bit about subject!
My question is how the recognized simple scanning is described in your IT
security policy and why scanning is so dangerous for you?

Regards,
Sarunas


Current thread: