Remote host replies to SYN+FIN

kalin m kalin at el.net
Thu Aug 7 19:54:32 UTC 2008


i have that in....   i still get that message from nessus...   maybe 
synproxy or something like S/SAF?!




FreeBSD wrote:
> kalin m a écrit :
>>
>> does anybody have any idea how to resolve this?
>>
>> thanks..
>>
>>
>> kalin m wrote:
>>> hi all...
>>> after setting up a pf rule set on one of newly installed freebsd 7 i 
>>> did a scan with nessus 3 on that machine
>>>
>>> the result i got was like this one:
>>> http://www.nessus.org/plugins/index.php?view=single&id=11618 how do 
>>> 'fix' it using pf?...
>>>
>>>
>>>
>>> thanks...
>>>
>>>
> Hi,
>
> I think that you should look at the 'scrub' directive in pf.conf. I 
> think that a 'scrub in all' should block that kind of malformed packets.
>
> Martin
>


More information about the freebsd-questions mailing list