Any and all non-support discussions
Moderators: gerski, enjay, williamconley, Op3r, Staydog, gardo, mflorell, MJCoate, mcargile, Kumba, Michael_N
by uselessinfoguru » Sun Oct 22, 2017 3:59 pm
Possible debate among people with different views but, how secure is Whitelisting the firewall in a Vici system? Is is not still vulnerable to spoofed IP addresses and Man in the Middle attacks?
VERSION: 2.14-736a | BUILD: 200204-2336| Cluster Setup
-
uselessinfoguru
-
- Posts: 74
- Joined: Tue Jul 25, 2017 10:27 pm
by mflorell » Sun Oct 22, 2017 7:27 pm
If someone wants to bad enough, they can get into your system given enough time and resources. Of course that's usually extremely rare, and what you really need to worry about is the opportunistic hacker that port scans you and just wants to steal your data or your SIP carrier credentials. For those hackers, whitelisting is pretty effective if you set it up right.
-
mflorell
- Site Admin
-
- Posts: 18399
- Joined: Wed Jun 07, 2006 2:45 pm
- Location: Florida
-
by uselessinfoguru » Mon Oct 23, 2017 4:30 pm
Port Scanning won't work if ping is off (provided they aren't spoofing a good IP address) correct?
VERSION: 2.14-736a | BUILD: 200204-2336| Cluster Setup
-
uselessinfoguru
-
- Posts: 74
- Joined: Tue Jul 25, 2017 10:27 pm
by mflorell » Mon Oct 23, 2017 8:50 pm
That's correct.
-
mflorell
- Site Admin
-
- Posts: 18399
- Joined: Wed Jun 07, 2006 2:45 pm
- Location: Florida
-
by alo » Tue Oct 24, 2017 11:24 am
I noticed that when I disable ping, I am not able to ping even from addresses I add to yast as safe. Is there a way around that? I noticed that the dialing servers and Database like to ping each other on reboot and sometimes the office likes to ping the servers for connectivity reasons.
-
alo
-
- Posts: 202
- Joined: Wed Jun 20, 2012 10:21 am
Return to General Discussion
Who is online
Users browsing this forum: No registered users and 22 guests