linux-admin.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* Re: How to configure iptables to block a land attack?
@ 2003-03-15 17:43 Tace  
  2003-03-15 18:40 ` terry white
  2003-03-15 19:42 ` Glynn Clements
  0 siblings, 2 replies; 7+ messages in thread
From: Tace   @ 2003-03-15 17:43 UTC (permalink / raw)
  To: linux-admin, Sadanapalli, Pradeep Kumar (MED, TCS)

Hi,

http://www.linux-firewall-tools.com/linux/

Try this link or use Google.com to search

Land Attack is when a spoofed packet with its source and dest. address
set to ur localhost addr (127.0.0.1) is send to u via ext. interface
(someone correct me if i am wrong :) )

Just configure ur iptables to reject packets from interfaces with
source addr = 127.0.0.1 and dest addr = 127.0.0.1

Tace

---
Consciousness: 
   that annoying time between naps
The only cure for insomnia is:
   to get more sleep


On Fri, 14 Mar 2003 15:34:51  
 Sadanapalli, Pradeep Kumar (MED, TCS) wrote:
>Hi Friends,
>Can anyone tell me how should I configure my IPTABLES Firewall to block
>a LAND ATTACK?
>I am new to firewalling..I am running RedHat Linux 8.0 and iptables.
>
>Can anyone send me a standard iptables configuration for all the common
>attacks?
>I would like to know what are all the common atacks and explaination
>about them.
>Can you direct me to some good link where I can find information on this
>topic?
>
>Thanks and Regards,
>Pradeep
>
>
>
>-----Original Message-----
>From: terry white [mailto:twhite@aniota.com]
>Sent: Friday, March 14, 2003 2:18 AM
>To: linux-admin
>Subject: RE: how to minimize/maximize/restore an open window in linux
>...
>
>
>on "3-13-2003" "Sadanapalli, Pradeep Kumar (MED, TCS)" writ:
>
>: I am using RedHat linux 8.0 . I am running KDE .
>
>... that is the install i'm running on one of my machines.
>
>    i just checked, and when a window is open, 'left' click on the '-'
>at
>the "top right" of that window, and it disappears into a 'pane' at the
>bottom of the desktop.  'left' click that, and it reappears ...
>
>
>-- 
>... i'm a man, but i can change,
>    if i have to , i guess ...
>
>-
>To unsubscribe from this list: send the line "unsubscribe linux-admin"
>in
>the body of a message to majordomo@vger.kernel.org
>More majordomo info at  http://vger.kernel.org/majordomo-info.html
>-
>To unsubscribe from this list: send the line "unsubscribe linux-admin" in
>the body of a message to majordomo@vger.kernel.org
>More majordomo info at  http://vger.kernel.org/majordomo-info.html
>


_____________________________________________________________
Get 25MB, POP3, Spam Filtering with LYCOS MAIL PLUS for $19.95/year.
http://login.mail.lycos.com/brandPage.shtml?pageId=plus&ref=lmtplus

^ permalink raw reply	[flat|nested] 7+ messages in thread
* RE: How to configure iptables to block a land attack?
@ 2003-03-17 21:37 Sadanapalli, Pradeep Kumar (MED, TCS)
  0 siblings, 0 replies; 7+ messages in thread
From: Sadanapalli, Pradeep Kumar (MED, TCS) @ 2003-03-17 21:37 UTC (permalink / raw)
  To: linux-admin

Thanks a lot to you all for your responses. The information you all
provided
really helped me a lot. Now I have one more issue.

I am not using Statically Linked IP Address. I am using DHCP for
configuring my network.
In that case, how should I configure my firewall(iptables) to block Land
Attack.

If it was a statically linked IP address, and if my IP address was
203.116.14.1(say),
then I can use
	iptables -A INPUT -s 203.116.14.1 -d 203.116.14.1 -j DROP

but for DHCP configuration, how should I do this?
Please help me.

Thanks,
Pradeep


-----Original Message-----
From: Glynn Clements [mailto:glynn.clements@virgin.net]
Sent: Saturday, March 15, 2003 1:43 PM
To: linux-admin
Subject: Re: How to configure iptables to block a land attack?



Tace   wrote:

> Just configure ur iptables to reject packets from interfaces with
> source addr = 127.0.0.1 and dest addr = 127.0.0.1

More generally, source and destination addresses should match the
interface; in most cases:

1. 127.x.x.x shouldn't occur as either the source or destination
address for any interface other than loopback.

2. Packets with one of your IP addresses as the destination address
shouldn't be sent to any interface except loopback, and packets with
one of your IP addresses as the source address shouldn't be received
from any interface except loopback.

3. Private IP addresses (e.g. 192.168.x.x) shouldn't occur as either
the source or destination address for an external (e.g. dial-up)
interface.

4. Routable local IP addresses shouldn't occur as the destination
address for any packet sent to an external (e.g. dial-up) interface,
and shouldn't occur as the source address for any packet received from
an external interface.

-- 
Glynn Clements <glynn.clements@virgin.net>
-
To unsubscribe from this list: send the line "unsubscribe linux-admin"
in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html

^ permalink raw reply	[flat|nested] 7+ messages in thread
* How to configure iptables to block a land attack?
@ 2003-03-14 21:34 Sadanapalli, Pradeep Kumar (MED, TCS)
  2003-03-15 14:25 ` terry white
  2003-03-17  9:18 ` Ben Clewett
  0 siblings, 2 replies; 7+ messages in thread
From: Sadanapalli, Pradeep Kumar (MED, TCS) @ 2003-03-14 21:34 UTC (permalink / raw)
  To: linux-admin

Hi Friends,
Can anyone tell me how should I configure my IPTABLES Firewall to block
a LAND ATTACK?
I am new to firewalling..I am running RedHat Linux 8.0 and iptables.

Can anyone send me a standard iptables configuration for all the common
attacks?
I would like to know what are all the common atacks and explaination
about them.
Can you direct me to some good link where I can find information on this
topic?

Thanks and Regards,
Pradeep



-----Original Message-----
From: terry white [mailto:twhite@aniota.com]
Sent: Friday, March 14, 2003 2:18 AM
To: linux-admin
Subject: RE: how to minimize/maximize/restore an open window in linux
...


on "3-13-2003" "Sadanapalli, Pradeep Kumar (MED, TCS)" writ:

: I am using RedHat linux 8.0 . I am running KDE .

... that is the install i'm running on one of my machines.

    i just checked, and when a window is open, 'left' click on the '-'
at
the "top right" of that window, and it disappears into a 'pane' at the
bottom of the desktop.  'left' click that, and it reappears ...


-- 
... i'm a man, but i can change,
    if i have to , i guess ...

-
To unsubscribe from this list: send the line "unsubscribe linux-admin"
in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html

^ permalink raw reply	[flat|nested] 7+ messages in thread

end of thread, other threads:[~2003-03-17 21:37 UTC | newest]

Thread overview: 7+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-03-15 17:43 How to configure iptables to block a land attack? Tace  
2003-03-15 18:40 ` terry white
2003-03-15 19:42 ` Glynn Clements
  -- strict thread matches above, loose matches on Subject: below --
2003-03-17 21:37 Sadanapalli, Pradeep Kumar (MED, TCS)
2003-03-14 21:34 Sadanapalli, Pradeep Kumar (MED, TCS)
2003-03-15 14:25 ` terry white
2003-03-17  9:18 ` Ben Clewett

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).