On Wed, Dec 05, 2001 at 05:46:54PM +, Matt Sykes wrote:
> My question is: how confident should I be? Is it really worthwhile
> for me to spend time setting up tripwire, kernel levels, etc? How
> many people are that really that paranoid (paranoia being a good
> thing)? I am a software deve
I have a recently cvsupped SMP 4.4-stable running great.
ipfilter is:
- blocking (all?) spoofs and smurfs
- blocking all packets on all ports except:
- packets part of inside-initiated tcp/udp/icmp connections
- tcp SYN packets on port 22 (ssh)
The setup is taken directly from the ipf-ho