Re: How safe for firewall rule using 127.0.0.0/8

From: Volker Birk (bumens_at_dingens.org)
Date: 10/30/05


Date: 30 Oct 2005 12:48:58 +0200

mclo@asia.com wrote:
> We found that we need to enable the following firewall rule in order to
> run one of our application
> Direction: Incoming
> Protocol: TCP
> Local Port: Any
> Remote Port: Any
> Remote Address: 127.0.0.0/8
> Is it safe to include this rule. Any example to attack machines with
> this rule?

It is only safe to do this with a host based packet filter. On any
firewall implementation there may be no such rule. The opposite, filtering
this traffic, should be true.

Yours,
VB.

-- 
"Ich bin ein freier Mensch und werde jetzt von meinen Freiheitsrechten
Gebrauch machen - und zwar ausgiebig - natürlich nur in dem Rahmen, den
Otto Schily mir noch zur Verfügung stellt."
                   Wolfgang Clement am 10.10.05 als Noch-Superminister

Quantcast