LinuxQuestions.org
Did you know LQ has a Linux Hardware Compatibility List?
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
LinkBack Search this Thread
Old 05-30-2005, 06:39 AM   #1
Roger Krowiak
Member
 
Registered: Oct 2004
Distribution: Slackware
Posts: 33

Rep: Reputation: 15
Question Disable passive NAT detection


I've successfully set up the iptables to produce the same TTL value for all outgoing packets, but there is still passive way how to detect NAT using the ID field of IP packets (as described here). There is a possibility to eliminate this by setting the ID of IP packets to the same value (e.g. 0), but this means that I will have to turn the DF (don't fragment) flag to all outgoing packets. And my question is - can I do it safely? I use Internet for mails, www and some games and I'm not sure if this won't break them.

Or, is there any other way how to eliminate NAT detection using ID field? Thank for reactions.

Last edited by Roger Krowiak; 05-30-2005 at 06:41 AM.
 
Old 05-30-2005, 07:05 AM   #2
bramhastra
Member
 
Registered: May 2005
Location: India
Distribution: RHEL 4.0
Posts: 136

Rep: Reputation: 15
you need an IPSpoofer.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
how to disable sata detection ? Karlsonas Linux - Hardware 2 10-05-2004 03:25 PM
Disable floppy detection on boot? magicvash Mandriva 0 11-18-2003 12:34 AM
iptables and passive ftp behind NAT radix Linux - Security 7 10-21-2003 02:06 PM
iptables and passive FTP behind the nat radix Linux - Security 5 09-16-2003 07:14 PM
vsftpd behind router doing nat - enabling passive alansk Linux - Software 0 07-16-2003 06:13 AM


All times are GMT -5. The time now is 05:28 AM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration