Re: (PM) Filter to limit incoming telnets

I don't work for Lucent RABU (livingston@iav.com)
Tue, 16 Feb 1999 08:23:44 -1000 (HST)

On Tue, 16 Feb 1999, Lisa Casey wrote:

> Hi,
>
> If someone could help me out here a bit, I'ld appreciate it. I'ld like to
> block incoming telnets to my PM3 (ComOS 3.8.2) to everyone except those
> coming from my Class C. I assume I'ld do this via a filter. I've looked
> through the archives, but still don't feel comfortable about how to
> accomplish this (I've not used any filters before and ought to remedy
> that!). Any help or pointers would be appreciated.

>From an unamed tech at LRABU, use at your own risk disclaimer ;)

BTW, you still better read about applying the filter as this just creates
it...

#

To setup a filter to stop these type of attacks.

Command>add stoptcp.in
Command>set stoptcp.in 1 permit 1.2.3.4/24 1.2.3.0/24 tcp dst eq 23
Command>set stoptcp.in 2 deny 0.0.0.0/0 1.2.3.4/24 tcp dst eq 23
Command>set stoptcp.in 3 permit 0.0.0.0/0 0.0.0.0/0

1.2.3.4/24 is the Pm3 ethernet IP address.

#

--
Aloha from Paradise,

Sherwood Got Clue? If so: ISPF! The Forum for ISPs by ISPs, <http://www.ispf.com>

- To unsubscribe, email 'majordomo@livingston.com' with 'unsubscribe portmaster-users' in the body of the message. Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>