Testing my recently purchased firewall / NAT

From: J F (j1234f_at_excite.com)
Date: 06/25/03


Date: Wed, 25 Jun 2003 18:59:07 GMT

I would like to throughly test my recently purchased firewall / NAT
hardware box.

I know there are websites like grc.com that will run a port scan.

Also leaktest from Steve Gibson for running on a windows machine trying
to pretend to be a virus or spyware trying to get out.

Those are 2 good tests.

The next test I was thinking of was to disconnect the firewall and
hook my linux box to the WAN side and run nmap and dhcp daemon.
Dhcp daemon on linux box to simulate booting on cable modem.
Would this be useful?

The next test would be to run a linux box with on the LAN side of
firewall and put up a lot of open ports on the linux box (a honeypot).
Then do a port scan from the internet website on WAN side.
This would test if the firewall was doing a port farward from LAN to WAN.
Problem is I don't know how to build a linux honeypot??

Are there any other good tests to run?



Relevant Pages

  • RE: seeking a better understanding
    ... were to breach that port, could they do more than deface my website? ... or do I need a middle box running some form of firewall ... Other boxes are Linux. ... use on a linux machine, and do the spot trojans as the MS ones do? ...
    (Security-Basics)
  • Re: seeking a better understanding
    ... > were to breach that port, could they do more than deface my website? ... Other boxes are Linux. ... I know this is a firewall, but I don't think it is like the ... > use on a linux machine, and do the spot trojans as the MS ones do? ...
    (Security-Basics)
  • RE: seeking a better understanding
    ... were to breach that port, could they do more than deface my website? ... or do I need a middle box running some form of firewall ... Other boxes are Linux. ... use on a linux machine, and do the spot trojans as the MS ones do? ...
    (Security-Basics)
  • RE: seeking a better understanding
    ... Good and ideal security should encourage you to use a dual- barrel ... non known port, NBT, known trojan, etc... ... or do I need a middle box running some form of firewall ... Other boxes are Linux. ...
    (Security-Basics)
  • [UNIX] Linux Kernel IP Masquerading Vulnerability
    ... Linux Kernel IP Masquerading Vulnerability ... firewall as being a legitimate, ... The attacker should listen on TCP port 6667 on the specified remote host ...
    (Securiteam)