Updated: 6.5.2003; 19:43:34 GMT

blogattic
weblog mostly about security


daily link  Tuesday, April 1, 2003

Groundbreaking security RFC

Abstract:

"Firewalls, packet filters, intrusion detection systems, and the like often have difficulty distinguishing between packets that have malicious intent and those that are merely unusual. We define a security flag in the IPv4 header as a means of distinguishing the two cases."

My favourite bit:

"Multi-level insecure operating systems may have special levels for attack programs; the evil bit MUST be set by default on packets emanating from programs running at such levels.  However, the system MAY provide an API to allow it to be cleared for non-malicious activity by users who normally engage in attack behavior." [IETF]

  7:15:10 PM  permalink  

 
April 2003
Sun Mon Tue Wed Thu Fri Sat
    1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30      
Mar   May

Click to see the XML version of this web page.

jenett.radio.simplicity.1.3R
Radio Userland



Copyright 2003 © Jiri Ludvik.
Last update: 6.5.2003; 19:43:34.