Re: Borderware predictable initial TCP

From: Aggelos P. Varvitsiotis (avarvitat_private)
Date: Thu Sep 03 1998 - 02:14:56 PDT

  • Next message: HD Moore: "More Overflows..."

    > AFAIK, this problem is not a Firewall-1 problem but a HP-UX problem.
    >
    > Please respond to Gigi Sullivan <sullivanat_private>
    > To:     BUGTRAQat_private
    > Subject:        Re: Borderware predictable initial TCP sequence numbers
    >
    > Hello there,
    >
    > This can be applied also to Firewall-1 (CheckPoint) running on an
    > HP-UX 10.X series.
    >
    >
    > bye bye
    >
    >
    > *************************************************
    > Racer X
    >
    > (Unknown to Speed, Racer X is actually his older
    > brother Rex, who ran away from home years ago)
    > racer-xat_private
    > *************************************************
    > --------------------------------------------------------------------------------
    >  -------------------------------\r\nGet your free email from altavista.iname.com
    >
    
    Fix for HP-UX 9.X (this has been around for quite some time):
    
            echo "tcp_random_seq/W 2" | /usr/bin/adb -w /hp-ux /dev/kmem
    
    There is a similar fix for 10.X floating around, for whom may
    be interested to look for it.
    
    
    a.varvitsiotisat_private                     A.Varvitsiotis
                                                 ICCS Computer Center
                                          National Technical University of Athens
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:14:50 PDT