Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 15 May 2001 16:45:42 -0500
From:      Eric Anderson <anderson@centtech.com>
To:        freebsd-security@freebsd.org
Subject:   risks of ip-forwarding, without ipf/ipfw
Message-ID:  <3B01A386.53176DF8@centtech.com>

next in thread | raw e-mail | index | archive | help
What are the risks of having a dual-homed machine (2 NIC's), one on the
big bad internet and one on a home lan, with ip forwarding enabled,
without ipf or ipfw running?

Is this a very bad thing?  Is this easily "hopped" to access the
internal net? 
The one way I can think of that would be fairly easy to do is to use the
box as a gateway to the internal home net, and that would allow access
to the internal net.. (this is in theory, since I haven't set this up
and tested this yet).. 

Thoughts?



Eric

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3B01A386.53176DF8>