[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [OT] which firewall



PureBytes Links

Trading Reference Links

One trick to make the Linksys-style boxes more stealthy and more secure
is to set up a "DMZ" on the box. The DMZ is meant to allow one computer
on the network to be fully open to the outside world, e.g. if you're
running a game server. But the trick is to tell the Lynksys box to set
up a DMZ for an IP address that doesn't have a computer hooked to it.
So, when someone probes from outside, the Lynksys tries to forward the
request to a computer that doesn't exist. As far as I know, it appears
to the cracker that there is nothing connected at the address they are
probing. That may or may not be true depending on the sophistication of
the cracker but mine always measures full stealth on Gibson's and other
similar tests.

-- 
  Dennis