unprivileged ports
djweis@sjdjweis.com
djweis@sjdjweis.com
Fri, 3 Aug 2001 08:43:44 -0500 (CDT)
No, a connection is uniquely identified by 4 bits of data, source ip,
source port, destination ip, and destination port. There is no way to get
past connection tracking (barring bugs) based on just an ip.
dave
On Fri, 3 Aug 2001, Florent wrote:
> Sorry, I have not mentionned that I knew those tips for RELATED and ESTABLISHED for the FTP.
> What I am thinking of is something like that :
>
> Imagine a box on your LAN is going to some web site: a connection is established between the 2 boxes.
> At this time, anyone on the web server you've just seen can use these ports to break into your LAN.
>
>
> Florent
>
--
Dave Weis "I believe there are more instances of the abridgement
djweis@sjdjweis.com of the freedom of the people by gradual and silent
encroachments of those in power than by violent
and sudden usurpations."- James Madison