Penetration Testing mailing list archives

Re: [PEN-TEST] IP fragmentation attack


From: "Miller, William T DISC4/Sytex" <William.Miller () HQDA ARMY MIL>
Date: Wed, 18 Oct 2000 12:33:07 -0400

Robert graham gave a excellent talk at DEFCON about IP frags and the issues
surrounding fragmentation and IDS's. The link for this is
http://www.robertgraham.com/

                                                                        

-----Original Message-----
From: Dario Forte - Csi Member - [mailto:awandacomm () LIBERO IT]
Sent: Wednesday, October 18, 2000 12:04 PM
To: PEN-TEST () SECURITYFOCUS COM
Subject: [PEN-TEST] IP fragmentation attack


Greetings to all.

My lab is doing an specific  pen test against two different lan segment
(Firewall and Ids Protected), with Ip Frag Attack.
Does somebody can highlight some real recent news about this issue ?
We already know the lance's, rfc's and DugSong paper about these argument;we
would like to know more info (and opinions) about the fact  that IP
fragmentation works as firewalls are supposed to keep the state of a
connection.
Thanks in advance

dario


Current thread: