Re: Firewall Testing Software

From: defaillance@hushmail.com
Date: 04/10/03

  • Next message: Dieter Sarrazyn: "RE: http fingerprinting"
    Date: Thu, 10 Apr 2003 06:02:43 -0700
    To: pen-test@securityfocus.com
    From: <defaillance@hushmail.com>
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    Generate the packet against the ruleset you would like
    to test using Nemesis and watch the reply thru Tcpdump
    or any packet capture program of your choice...

    ive seen a windows port of Nemesis latelly, but dont
    actually know if all the feature are availlable on it.

    both program are availlable on *nix and win32

    tcpdump: http://www.tcpdump.org/ win32/*nix
    nemesis:http://www.packx.net/packx/html/en/index-en.htm win32
            http://www.packetfactory.net/projects/nemesis *nix

    Matt ~

    Colin Greg wrote:

    Hi,

    Can anyone recommend good products for testing firewall rulesets?

    I have searched on the web and only come up with one, Firewall Informer

    from Blade, and I have not looked at this yet but I thought I would ask

    the experts.

    Merci
    CG

    - --------------------------------------------------------------
    Costs are climbing and complaints are rising
    as SPAM overloads your e-mail servers and Inboxes
    SurfControl E-mail Filter puts the brakes on spam & viruses
    and gives you the reports to prove it.
    http://www.securityfocus.com/SurfControl-pen-test2
    Download a free trial and see just
    what's going in and out of your organization.
    - --------------------------------------------------------------

    -----BEGIN PGP SIGNATURE-----
    Version: Hush 2.2 (Java)
    Note: This signature can be verified at https://www.hushtools.com/verify

    wmAEARECACAFAj6Va3EZHGRlZmFpbGxhbmNlQGh1c2htYWlsLmNvbQAKCRAAqpYJlh8f
    xbj/AJwN+8CeisJjqm4Gni45b05jelpnZACeNNFUapNMBLCYpymUBGWEquL00eo=
    =+x/e
    -----END PGP SIGNATURE-----

    Concerned about your privacy? Follow this link to get
    FREE encrypted email: https://www.hushmail.com/?l=2

    Big $$$ to be made with the HushMail Affiliate Program:
    https://www.hushmail.com/about.php?subloc=affiliate&l=427

    --------------------------------------------------------------
    Costs are climbing and complaints are rising
    as SPAM overloads your e-mail servers and Inboxes
    SurfControl E-mail Filter puts the brakes on spam & viruses
    and gives you the reports to prove it.
    http://www.securityfocus.com/SurfControl-pen-test2
    Download a free trial and see just
    what's going in and out of your organization.
    --------------------------------------------------------------


  • Next message: Dieter Sarrazyn: "RE: http fingerprinting"

    Relevant Pages

    • Re: Firewall Testing Software
      ... are some open source/freeware tools that can help: ... There are also a number of other packet creation tools that can aid you in ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: BIND/DNS Version check
      ... > version of BIND/DNS running on the server.. ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: http fingerprinting
      ... > As far as I know there is a paper/thesis on one tool called HMAP.pl. ... For Apache servers, you can use wh_fingerprint: ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • IPv4 - mapped address considered harmful
      ... This document describes posible vulnerabilities in IPv4 mapping. ... Does anyone know of penetration tests that use this? ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)
    • Re: http fingerprinting
      ... Jeremiah Grossman gave a presentation at Seattle Blackhat 03 that may shed ... identifiers. ... as SPAM overloads your e-mail servers and Inboxes ... SurfControl E-mail Filter puts the brakes on spam & viruses ...
      (Pen-Test)