Re: Network File serving options

From: Justin Robbs (justin_robbsNO_at_SPAMhotmail.com)
Date: 10/31/03


Date: Fri, 31 Oct 2003 08:28:48 -0700


> Not haveing a published phone number fits the 'security through
> obscurity model' - and that has been shown to be one of the worst
> security mode that anyone tries.

Admittedly, it isn't the most secure method. But the powers that be are
happy with that solution, coupled of course with a strong password.

> Callback modems - if you must use modems - are a good route as they
> will only call back specific phone numbers.
>
--snip--
>
> You invert the funtions of the modems, so that the server modem
> goes on line in originate mode [not answer mode] and you call that
> modem in answer mode.
>
> This means that if anyone dials the number they never get a modem
> tone, as the modem at the server is waiting for the tone. When you
> call the far side you get silence and then your modem issues the
> handshake tone.
>
--snip--
>
> Bill
>
> --
> Bill Vermillion - bv @ wjv . com

What other steps could be done to improve the system security, besides those
posted? Nothing to specific, just some general recommendations.

BTW, I didn't mean that security wasn't an issue for the system as a whole,
but for the purposes of this discussion.

Thanks,
Justin



Relevant Pages

  • trace ip
    ... Ascend digital modem box, his last attack I logged he tried 15 or so ... easy to see from the out side or make the security really LAX on that comp. ... It is all command ...
    (microsoft.public.security)
  • Re: trace ip
    ... > How can I trace someone trying to hack my ascend digital vpn modem? ... > authentication and is being logged into our RAD logs. ... > to c:\) So it will look like this in command ... Anyway I am not too worried about security ...
    (microsoft.public.security)
  • Re: Modem assessment, was: Re: Pentester convicted..
    ... Subject: Modem assessment, was: Re: Pentester convicted.. ... approved Modem Security Policy also helps. ... Download FREE whitepaper on how a managed service can ...
    (Pen-Test)
  • RE: Would you pay more ...
    ... modem as a preferred option. ... the router could be ... pre-configured to limit the ports passed through, ... If you wish to have more security, a firewall is of course the ...
    (Security-Basics)
  • Re: SPRINT ADSL [Zyxel 645 Series Modem]
    ... The problem lies in the fact that the modem you have provided to your ... Sprint is working closely with its DSL modem manufacturer to ensure the security and integrity of its Sprint-provided DSL equipment. ... Sprint is dedicated to providing its customers a secure broadband Internet network, and to that end, recently identified an additional layer of security that can help protect customers' DSL modems.<?xml:namespace ...
    (Bugtraq)