Re: Firewall Testing Software

From: alaric@alaricsecurity.com
Date: 04/10/03

  • Next message: Nicolas Gregoire: "Re: Firewall Testing Software"
    Date: 10 Apr 2003 05:43:52 -0000
    From: <alaric@alaricsecurity.com>
    To: pen-test@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is) In-Reply-To: <20030409220723.2528.qmail@www.securityfocus.com>

    Hi,

    I don't know if you are only interested in commercial products but there
    are some open source/freeware tools that can help:

    ftester - This package can be found at PacketStorm and is designed for fw
    testing.

    OSSTMM - The OSSTMM manual (available at www.isecom.com) has a section
    detailing a methodology that should be used when auditing a firewall.

    There are also a number of other packet creation tools that can aid you in
    a audit. A complied list of tools is available here:
    http://www.isecom.com/projects/operationaltools.htm#fra

    I hope you are cli inclined.

    Later,
    Alaric

    --------------------------------------------------------------
    Costs are climbing and complaints are rising
    as SPAM overloads your e-mail servers and Inboxes
    SurfControl E-mail Filter puts the brakes on spam & viruses
    and gives you the reports to prove it.
    http://www.securityfocus.com/SurfControl-pen-test2
    Download a free trial and see just
    what's going in and out of your organization.
    --------------------------------------------------------------


  • Next message: Nicolas Gregoire: "Re: Firewall Testing Software"

    Relevant Pages

    • Re: Firewall Testing Software
      ... Generate the packet against the ruleset you would like ... to test using Nemesis and watch the reply thru Tcpdump ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: BIND/DNS Version check
      ... > version of BIND/DNS running on the server.. ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • IPv4 - mapped address considered harmful
      ... This document describes posible vulnerabilities in IPv4 mapping. ... Does anyone know of penetration tests that use this? ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: http fingerprinting
      ... Jeremiah Grossman gave a presentation at Seattle Blackhat 03 that may shed ... identifiers. ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: http fingerprinting
      ... > As far as I know there is a paper/thesis on one tool called HMAP.pl. ... For Apache servers, you can use wh_fingerprint: ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)