Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 13 Apr 1999 12:31:25 -0400
From:      Keith Stevenson <k.stevenson@louisville.edu>
To:        freebsd-security@freebsd.org
Cc:        jared@puck.nether.net
Subject:   Re: Sequential TCP port allocation?
Message-ID:  <19990413123125.B25109@homer.louisville.edu>
In-Reply-To: <19990413113039.H17083@puck.nether.net>; from Jared Mauch on Tue, Apr 13, 1999 at 11:30:39AM -0400
References:  <19990412120126.B15762@homer.louisville.edu> <199904131505.LAA21502@cc942873-a.ewndsr1.nj.home.com> <19990413113039.H17083@puck.nether.net>

index | next in thread | previous in thread | raw e-mail

<A lot of comments about nmap and basic security snipped>

Ok, exactly what did all of that have to do with my question?  To restate:

FreeBSD 2.2.8-STABLE appears to allocate TCP ports in sequential order.  ISS
identifies this as a potential security issue.  My question is whether or not
a sysctl or other configuration parameter exists which causes TCP ports to be
allocated in a more random order.  Furthermore, does anyone know whether or not
FreeBSD 3.1-STABLE exhibits the same port allocation behavior as 2.2.8?

What I do not want is to participate in a debate over whether or not 
sequential port allocation is a "real" security exposure.

Regards,
--Keith Stevenson--

-- 
Keith Stevenson
System Programmer - Data Center Services - University of Louisville
k.stevenson@louisville.edu
PGP key fingerprint =  4B 29 A8 95 A8 82 EA A2  29 CE 68 DE FC EE B6 A0


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?19990413123125.B25109>