home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.dcom.modems,aus.comms,comp.security.misc
- Path: news.ci.com.au!fgh!dave
- From: dave@fgh.fgh.oz.au (Dave Horsfall)
- Subject: Re: Questions about Modems (security)
- Message-ID: <DLnxxA.7nL@fgh.fgh.oz.au>
- Organization: FGH Decision Support Systems Pty Ltd
- References: <4dv9mi$191@tulpi.interconnect.com.au>
- Date: Wed, 24 Jan 1996 02:07:58 GMT
-
- In article <4dv9mi$191@tulpi.interconnect.com.au>,
- felicj@wintech.com.au (Felicity Jones) writes:
-
- > I need some absolutely, dead-sure, expert-knows answers on modems and their
- > security:
-
- Well, common sense will do.
-
- > 1. Scenario: A modem has auto-answer turned off (ie s0=0). Is there any way
- > that a clever person can force it to pick up by dialling in to it?
-
- Not unless the modem is faulty. Some answering machines will do this,
- but that's a different kettle of kippers.
-
- > 2. Scenario: A modem has auto-answer turned on (or some clever person has
- > forced it to pick up), but no comms software is sitting there to take care of
- > an incoming call. Can a clever person somehow upload software that will give
- > them free reign over my PC (and LAN)? (Like for instance, FastLynx used to
- > let you "upload" its software to another PC via a serial cable). If so, how
- > might one prevent this?
-
- How could they? Of course, this assumes that the underlying system won't
- start a session on it upon seeing RING...
-
- > 3. Scenario: I am connected to the net via dial-up PPP (or SLIP I suppose).
- > Can some clever person actually tunnel back through my connection to rape and
- > pillage my PC (and others on a LAN)? If so, is there a way to secure this?
-
- Now for the bad news... It's trivial. Assuming you're running TCP/IP,
- you need to turn off all services you don't need, and apply authentication
- to what's left. Exactly how depends on what you are running - the Internet
- uses firewalls for this very purpose.
-
- --
- Dave Horsfall VK2KFU dave@fgh.oz.au Ph: +61 2 9957-4224 Fx: +61 2 9922-5286
- FGH Decision Support Systems P/L, 77 Pacific Hwy, Nth. Sydney, 2060, Australia
-