Hi Again,
[try to conform to the common Internet standards form mailing, please]
> the easy way I think is disable IPX protocal under mS according to your
> points.
Well, I'd be very pleased if you could tell me how I can disable this
stuff. Ok, I don't have any MS box here but my costumers do have them
and the fill up my firewall and IDS logfiles with this crap! So, if you
know a way, please tell me how.
> actually, I havn't meet the problem yet. Do you know how to simulate such
> attack ? A litter interesting, I wanna a try.
Stimulate? Just put two Win2k boxes as realserver in a net and put a
logging packetfilter with intelligent rules before, the attack is an
immediate fillup of your logfiles with stupid "IPX: Where is the next
Win2k box I could talk IPX too? Please send answers to broadcast and
if possible in IPX, so all the machines around will be happy".
Thanks for your patience and my ignorance,
Roberto Nibali, ratz
--
mailto: `echo NrOatSz@xxxxxxxxx | sed 's/[NOSPAM]//g'`
|