Check point eng allowing Nmap NULL access

From: ozzie ozzie (ozkan_aziz_at_hotmail.com)
Date: 07/15/03

  • Next message: Domingos Costa: "Vuln scan tool for web"
    Date: 15 Jul 2003 16:00:57 -0000
    To: pen-test@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is)

    hi all,

    I have just installed a GTA robox firewall, which uses the check point
    engine as far as I know. I have tested it with nmap and the only access
    that seems to get through is an nmap scan using no ping and null flags.

    does anyone one know how to prevent this? (I have a rule that says all ->
    all, any protocol deny so should it be getting through?)

    Thanks in advance

    oz

    ---------------------------------------------------------------------------
    Your network Firewall and IDS products do not prevent Web application
    exploits - the most common form of online attack - resulting in Web
    defacement, data theft, sabotage and fraud.

    KaVaDo is the first and only company that provides a complete and an
    integrated suite of Web application security products, allowing you to
    assess your entire environment, automatically set positive security
    policies and maintainĀ it without compromising business performance.

    For more information on KaVaDo and to download a FREE white paper on Web
    applications - security policy automation, please visit:
    http://www.kavado.com/ad.htm
    ----------------------------------------------------------------------------


  • Next message: Domingos Costa: "Vuln scan tool for web"

    Relevant Pages

    • Re: ARIN Handle IP block whois query
      ... Just use the whois web form and type the company name - ... > Your network Firewall and IDS products do not prevent Web application ... > integrated suite of Web application security products, ... > For more information on KaVaDo and to download a FREE white paper on ...
      (Pen-Test)
    • RE: Vuln scan tool for web
      ... I can't get them to work on servers with the latest version of PHP, and don't know why, so if you get them working could you please let me know. ... Your network Firewall and IDS products do not prevent Web application ... integrated suite of Web application security products, ... For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • Re: Vuln scan tool for web
      ... I'm looking for a web tool that allow a user connected to my lan scan his own computer for ... Your network Firewall and IDS products do not prevent Web application ... integrated suite of Web application security products, ... For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • RE: Check point eng allowing Nmap NULL access
      ... Pretty sure GTA do not use the check point engine. ... Your network Firewall and IDS products do not prevent Web application ... integrated suite of Web application security products, ... For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)
    • Re: IRC Sites
      ... > Your network Firewall and IDS products do not prevent Web application ... > integrated suite of Web application security products, ... > assess your entire environment, ... > For more information on KaVaDo and to download a FREE white paper on Web ...
      (Pen-Test)