Go Back   Velocity Reviews > Newsgroups > Computer Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply

Computer Security - trying to stealth port 113

 
Thread Tools Search this Thread
Old 12-10-2003, 01:49 PM   #1
Default trying to stealth port 113


I went to GRC shields up and ran a scan and it said that port 113 was
closed. How do I stealth it? I would like to close these ports that i am not
using. But isnt stealthing better? thanks Justin




RadarG
  Reply With Quote
Old 12-10-2003, 04:02 PM   #2
*Vanguard*
 
Posts: n/a
Default Re: trying to stealth port 113
"RadarG" wrote
in news:CvFBb.16457$Yt4.2290@lakeread05:
> I went to GRC shields up and ran a scan and it said that port 113 was
> closed. How do I stealth it? I would like to close these ports that i
> am not using. But isnt stealthing better? thanks Justin


There is a link to an article on just that exact shortcoming. As I
recall, I ran the test, saw the one port detected, and saw a link there
about that problem.

Short story is: define a virtual server in your router. Your NAT router
has its own DHCP server to allocate dynamically assigned IP addresses
which is how your hosts are configured to use DHCP (some routers let you
assign static IP addresses). There is a range of IP addresses that the
router's DHCP server is allowed from which it will assign IP addresses.
So pick an IP address outside that range that the DHCP server will use.
Then define a route through your router from the WAN-side port 113 to
the IP address for this non-existent host. The ident/AUTH is tried,
goes to port 113 on the router, the router funnels it off to the
LAN-side IP address for the server, the server doesn't exist, and the
request falls into the bit bucket because there's nothing there to
respond. I picked an IP address that was outside what the NAT router's
DHCP server can assign to make sure that this non-existent virtual
server didn't accidently become one of the internal hosts. The NAT
router's DHCP server can never assign that out-of-bounds IP address.


--
__________________________________________________ __________
*** Post replies to newsgroup. E-mail is not accepted. ***
__________________________________________________ __________





*Vanguard*
  Reply With Quote
Old 12-10-2003, 07:40 PM   #3
RadarG
 
Posts: n/a
Default Re: trying to stealth port 113

"*Vanguard*" <no-> wrote in message
newssHBb.496296$Tr4.1350930@attbi_s03...
> "RadarG" wrote
> in news:CvFBb.16457$Yt4.2290@lakeread05:
> > I went to GRC shields up and ran a scan and it said that port 113 was
> > closed. How do I stealth it? I would like to close these ports that i
> > am not using. But isnt stealthing better? thanks Justin

>
> There is a link to an article on just that exact shortcoming. As I
> recall, I ran the test, saw the one port detected, and saw a link there
> about that problem.
>
> Short story is: define a virtual server in your router. Your NAT router
> has its own DHCP server to allocate dynamically assigned IP addresses
> which is how your hosts are configured to use DHCP (some routers let you
> assign static IP addresses). There is a range of IP addresses that the
> router's DHCP server is allowed from which it will assign IP addresses.
> So pick an IP address outside that range that the DHCP server will use.
> Then define a route through your router from the WAN-side port 113 to
> the IP address for this non-existent host. The ident/AUTH is tried,
> goes to port 113 on the router, the router funnels it off to the
> LAN-side IP address for the server, the server doesn't exist, and the
> request falls into the bit bucket because there's nothing there to
> respond. I picked an IP address that was outside what the NAT router's
> DHCP server can assign to make sure that this non-existent virtual
> server didn't accidently become one of the internal hosts. The NAT
> router's DHCP server can never assign that out-of-bounds IP address.
>
>
> --
> __________________________________________________ __________
> *** Post replies to newsgroup. E-mail is not accepted. ***
> __________________________________________________ __________
>
>
> Thanks for the info





RadarG
  Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Can not access console port of Cisco 7200 vxr mansurbd Hardware 1 01-12-2009 06:53 PM
How to check current event and port status for Aliwei FXO gateway Robin wang Hardware 0 04-11-2008 09:54 AM
Port 445: Effective/Safe Blocking Samwise General Help Related Topics 0 01-06-2008 09:19 PM
Long, regarding a "lost" COM port smackedass A+ Certification 4 02-05-2007 04:55 PM
non plug and play device on com port? David K A+ Certification 1 07-18-2003 08:38 PM




SEO by vBSEO 3.3.2 ©2009, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46