* TFTP ..unable to track...
@ 2003-05-12 14:37 Gautham Thavva
2003-05-16 5:39 ` Cedric Blancher
0 siblings, 1 reply; 3+ messages in thread
From: Gautham Thavva @ 2003-05-12 14:37 UTC (permalink / raw)
To: netfilter
I have a linux firewall (using iptables 1.2.6a). This machine is running a TFTP client. I am unable to track the TFTP sessions.
I have built the tftp.patch, the netfilter tracking module for tftp by Magnus Boden. I have not been able to track the sessions.
The TFTP Read Request goes to the destination port 69 at the server side. The packets at the INPUT side to the firewall is at a port for which I have no prior knowledge.
Please can someone suggest a way to filter in only the tftp packets.
with regards,
Gautham Thavva
____________________________________________________________
Get advanced SPAM filtering on Webmail or POP Mail ... Get Lycos Mail!
http://login.mail.lycos.com/r/referral?aid=27005
^ permalink raw reply [flat|nested] 3+ messages in thread
* Re: TFTP ..unable to track...
2003-05-12 14:37 TFTP ..unable to track Gautham Thavva
@ 2003-05-16 5:39 ` Cedric Blancher
0 siblings, 0 replies; 3+ messages in thread
From: Cedric Blancher @ 2003-05-16 5:39 UTC (permalink / raw)
To: gautham.thavva; +Cc: netfilter
Le lun 12/05/2003 à 17:37, Gautham Thavva a écrit :
> This machine is running a TFTP client. I am unable to track the TFTP
> sessions.
See patch-o-matic. There's a patch for TFTP conntrack.
--
Cédric Blancher <blancher@cartel-securite.fr>
IT systems and networks security - Cartel Sécurité
Phone : +33 (0)1 44 06 97 87 - Fax: +33 (0)1 44 06 97 99
PGP KeyID:157E98EE FingerPrint:FA62226DA9E72FA8AECAA240008B480E157E98EE
^ permalink raw reply [flat|nested] 3+ messages in thread
* Re: TFTP ..unable to track...
@ 2003-05-19 17:44 Gautham Thavva
0 siblings, 0 replies; 3+ messages in thread
From: Gautham Thavva @ 2003-05-19 17:44 UTC (permalink / raw)
To: Cedric Blancher; +Cc: netfilter
I did use the *tftp.patch* by Magnus Boden in the patch-o-matic. I tried to track after applying this patch but was not successful.
I understood going through the patch that it will work if the firewall is in place on a machine that is running the tftp server.
In this case, it is a tftp client on the machine. Is my understanding correct? Please can you suggest another way.
regards,
Gautham
--------- Original Message ---------
DATE: 16 May 2003 08:39:14 +030
From: Cedric Blancher <blancher@cartel-securite.fr>
To: gautham.thavva@lycos.com
Cc: netfilter@lists.netfilter.org
>Le lun 12/05/2003 ` 17:37, Gautham Thavva a icrit :
>> This machine is running a TFTP client. I am unable to track the TFTP
>> sessions.
>
>See patch-o-matic. There's a patch for TFTP conntrack.
>
>--
>Cidric Blancher <blancher@cartel-securite.fr>
>IT systems and networks security - Cartel Sicuriti
>Phone : +33 (0)1 44 06 97 87 - Fax: +33 (0)1 44 06 97 99
>PGP KeyID:157E98EE FingerPrint:FA62226DA9E72FA8AECAA240008B480E157E98EE
>
>
____________________________________________________________
Get advanced SPAM filtering on Webmail or POP Mail ... Get Lycos Mail!
http://login.mail.lycos.com/r/referral?aid=27005
^ permalink raw reply [flat|nested] 3+ messages in thread
end of thread, other threads:[~2003-05-19 17:44 UTC | newest]
Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-05-12 14:37 TFTP ..unable to track Gautham Thavva
2003-05-16 5:39 ` Cedric Blancher
-- strict thread matches above, loose matches on Subject: below --
2003-05-19 17:44 Gautham Thavva
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox