Re: gif(4) and bpf(4)

From: Bruce M Simpson (bms_at_spc.org)
Date: 01/26/05

  • Next message: Simon L. Nielsen: "enc(4) (was: Re: gif(4) and bpf(4))"
    Date: Wed, 26 Jan 2005 02:33:54 +0000
    To: Jeremie Le Hen <jeremie@le-hen.org>
    
    

    On Tue, Jan 25, 2005 at 06:38:42PM +0100, Jeremie Le Hen wrote:
    > Are you thinking about the enc(4) interface [1] [2] provided with OpenBSD ?

    Somewhat, although whilst enc(4) provides some of this functionality, its
    role as far as I can see is mainly to provide a 'tapping point' for filtering
    packets as they pass out of the system and into IPSEC (something I believe
    we now handle using mbuf tags).

    Regards,
    BMS
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"


  • Next message: Simon L. Nielsen: "enc(4) (was: Re: gif(4) and bpf(4))"

    Relevant Pages

    • Re: [Full-disclosure] ICMP Security Vulnerabilities - NEW (cough)
      ... egress filtering based on the ICMP payload. ... When a host receives the request, ... >Allow the outbound echo request and inbound echo reply. ... >sender to slow down the rate it is sending packets. ...
      (Bugtraq)
    • Re: [Full-disclosure] ICMP Security Vulnerabilities - NEW (cough)
      ... egress filtering based on the ICMP payload. ... When a host receives the request, ... >Allow the outbound echo request and inbound echo reply. ... >sender to slow down the rate it is sending packets. ...
      (Full-Disclosure)
    • Re: spoofed packets to RFC 1918 addresses
      ... If there was widespread use of iingress/egress filtering we would probably ... > However, if the packets have a destination address in the RFC1918 space, I ... > your firewall or a compromise of something on the outside of your firewall. ... > and tracking system please see: http://aris.securityfocus.com ...
      (Incidents)
    • RE: Localhost packets on WAN
      ... These localhost-sourced packets cannot indicate a Blaster infection on the ... - A remote machine has traffic for certain sites redirected to localhost. ... - The remote machine is generating SYNs to TCP 80 with a spoofed source IP ... upstream's filtering point for bogon traffic. ...
      (Incidents)
    • Re: [Full-Disclosure] SP2 and NMAP
      ... you should at least look at some of the documents surrounding the ... and a documented attack which utilised the windows raw socket functionality: ... spoofed source raw UDP packets or customised TCP data, ...
      (Full-Disclosure)