Re: naive security question

2001-12-05 Thread mikea
On Wed, Dec 05, 2001 at 05:46:54PM +, Matt Sykes wrote: > My question is: how confident should I be? Is it really worthwhile > for me to spend time setting up tripwire, kernel levels, etc? How > many people are that really that paranoid (paranoia being a good > thing)? I am a software deve

naive security question

2001-12-05 Thread Matt Sykes
I have a recently cvsupped SMP 4.4-stable running great. ipfilter is: - blocking (all?) spoofs and smurfs - blocking all packets on all ports except: - packets part of inside-initiated tcp/udp/icmp connections - tcp SYN packets on port 22 (ssh) The setup is taken directly from the ipf-ho