LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-23-2004, 02:11 AM   #16
J_Szucs
Senior Member
 
Registered: Nov 2001
Location: Budapest, Hungary
Distribution: SuSE 6.4-11.3, Dsl linux, FreeBSD 4.3-6.2, Mandrake 8.2, Redhat, UHU, Debian Etch
Posts: 1,126

Original Poster
Rep: Reputation: 58

Thanks for the link, it helped me to secure our proxy server a bit more.

Though I think the risk was not that high: squid was actually listening on port 3128 of all interfaces, but there were no risky "http_access allow" rules before the "http_access deny CONNECT !SSL_ports" rule.

Besides, my own firewall script monitors tcp SYN packages sent from any illegal IP address to any troian ports (including port 3128, too) of our firewall, and denies and logs the sender's IP address within a minute upon just one single attempt.
(FreeBSD's ipfw firewall has so clean syntax, and it is so easy to add or delete firewall rules on the fly, that I was tempted to write my own portscan detection script, which works fine)

Checking the logs of the script, to my suprise, I found no connection attempts to port 3128 ever since the script is in operation (more than a year), though there were many connection attempts to ports 80 and 8080 (where nothing listens here).

As for the SOCKS proxy server: we have none.

Last edited by J_Szucs; 09-23-2004 at 02:20 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Major Victory for Freedom Lleb_KCir General 16 05-10-2005 11:35 AM
chop chop, dlink dwl 650 rev M problems? victory! rhoyerboat Linux - Wireless Networking 0 02-08-2005 06:04 AM
Starting Mozilla spams /var/log/messages Tinkster Slackware 7 08-22-2004 03:39 AM
Victory hexes in LGeneral for Linux woodywellhung Linux - Games 0 05-27-2004 05:02 AM
A small victory for PHP and open-source. Pcghost General 2 01-15-2004 07:40 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 12:58 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration