republican-creole
site Search:


 
    All Forums Hot Topics Gallery






how-to block ads


 
Search Topic:
Share Topic
Posting?
Post a:
Post a:
Links: ·Hijack This logs? ·Panda Free Tools ·Vundo Removal
AuthorAll Replies


Link Logger
Premium,MVM
join:2001-03-29
Calgary, AB
kudos:3

reply to Daniel

Re: NAT Challenge

said by Daniel:

Can we have you surf and such while we try? I've wanted to do some of this testing for quite a while anyway.
When do you want to do it and do you have a preference as to which NAT device? Would I be surfing to your site, or just surfing in general?

Blake
--
Vendor: Firewall Logging Software »www.SonicLogger.com - SonicWall and 3Com »www.LinkLogger.com - Linksys, Netgear and Zyxel


Daniel
Premium,MVM
join:2000-06-26
San Francisco, CA

said by Link Logger:

said by Daniel:

Can we have you surf and such while we try? I've wanted to do some of this testing for quite a while anyway.
When do you want to do it and do you have a preference as to which NAT device? Would I be surfing to your site, or just surfing in general?
I'm not sure what they paramaters would be, but no, it wouldn't be to a site I own. The idea would be to try and ride back through entries in your NAT table. I'm not saying I could do this, or that it can be done, but I don't see it as impossible.

As for whether or not someone could get packets into a modern SOHO router that doesn't have anything in the NAT table -- that I'd rate as highly unlikely.

But yeah, I think we should explore this for real this time. Many of us here have wanted to for a while now; we should just go ahead and do it. Let's set up a time to meet in #ATU or something.
--
dmiessler.com -- grep understanding knowledge

B
Premium,MVM
join:2000-10-28


A variation to a site you own would probably be good too -- the attack could involve an HTML e-mail message with links back to an image at your site -- the image retrieval would alert you to the target's presence (and presumably NAT table state).

Stretching the definition of "unsolicited" I realize, but...

-- B
--
In a realm outside causality and function



Link Logger
Premium,MVM
join:2001-03-29
Calgary, AB
kudos:3

reply to Daniel
That sounds fair. Try scanning the 'El Cheapo NAT Router' and see if you can determine what ports are being used and if that doesn't work I'll tell you what ports are being used so we don't waste too much time on detection and can focus on exploitation.

Blake
--
Vendor: Firewall Logging Software »www.SonicLogger.com - SonicWall and 3Com »www.LinkLogger.com - Linksys, Netgear and Zyxel


Wednesday, 22-May 23:49:17 Terms of Use & Privacy | feedback | contact | Hosting by nac.net - DSL,Hosting & Co-lo
over 13.5 years online © 1999-2013 dslreports.com.
Most commented news this week
Hot Topics