Re: [discuss] portmapping sucks

From: Trent Waddington
Date: Wed Jan 24 2007 - 19:20:18 EST


On 1/25/07, Jan Engelhardt <jengelh@xxxxxxxxxxxxxxx> wrote:
There are a number of common ports in the 512-1023 range. All
obsolescence and meaninglessness aside, there _are_ rather "important"
services in that range, ldaps, rtsp, kerberos, rsync, ftps, imaps, just
to name a few from /etc/services. This map-to-random-port behavior is a
total DoS thing.

Any reason why you can't make a one line code change to use a better
range? Or add a blacklist?

Trent
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/