Request for help with a hacker project, or simple question answer sought

Request for help with a hacker project, or simple question answer sought

Secure Home | Search | About
 General Computer Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Request for help with a hacker project, or simple question answer sought James 08-05-2006
Posted by -=SilliCone=- on August 6, 2006, 5:27 am
If you were  Registered and logged in, you could reply and use other advanced thread options
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

James wrote:

> I have two computers, one Windows and one linux; the linux one I want

'kay...

> to setup Samba on, and also have it as a secure server. In other

_what_ shall it serve? File and printer services are already done by Samba.

> words, I want to be able to run security tools on the "network"

...okayyy....

> (crossover cable needed?) - which terminates at a router.

<crossover>
If you want to connect two computers directly with nothing like a switch or
router between, yes.
So you want to scan your own network, right? That's usually a good idea.

> Here is the question: Using SATAN or equivalent tools, how do you
> prevent it from going outside the "LAN", so it doesnt start trying to
> scan the ISP connected to the router?

? You just scan for either specific IP's from your home lan or only the
IP-ranges usually used for local use (like 192.168.x.x)

> Tools I want to run on my home "LAN":
> SATAN
> SAINT
> NMap

You might want to have a look into the doc and manpages of these. There's
plenty of them.

> Additional question: There is also a unix for windows application
> installed on the Windows PC, can this be scanned as well as if it were
> an actual unix machine (i.e. it runs init and similar processes, and
> can also view ALL windows processes as well)?

If it has access to network ressources, sure. Why not? And if it
theoretically hasn't, it's a good idea to find out if it really hasn't ;-)

- --
"as appealing as it might seem, it is impossible to patch or upgrade users"
<Security Warrior>

*if it's not pgp-signed it's a fake*




-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)

iD8DBQFE1bX1Za9iGSXQ4MIRAqYlAKC0MFQ1TVJUo9KAWN6ZIE/+aBEaeQCdGkNX
6bgKVuKlwRt9gBXX73vzicg=
=Q9aA
-----END PGP SIGNATURE-----

Posted by M. Trimble on August 6, 2006, 11:48 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
James wrote:

> Hi all,
>
> I have two computers, one Windows and one linux; the linux one I want
> to setup Samba on, and also have it as a secure server. In other
> words, I want to be able to run security tools on the "network"
> (crossover cable needed?) - which terminates at a router.
>
> Here is the question: Using SATAN or equivalent tools, how do you
> prevent it from going outside the "LAN", so it doesnt start trying to
> scan the ISP connected to the router?
>
> Picture:
> Spare crossover cable (CAT5)
> Computer 1 (one ethernet jack) Computer two (one ethernet jack)
> \ //
>
> \ //
> CAT5/6 CAT5/6
> \ //
>
> |
> |-------------------------|
> Router (five ports plus one port for feed to
> internet)
> |
> |
> ISP < ------------------ > Internet
>
> Tools I want to run on my home "LAN":
> SATAN
> SAINT
> NMap
> etc.
>
> Additional question: There is also a unix for windows application
> installed on the Windows PC, can this be scanned as well as if it were
> an actual unix machine (i.e. it runs init and similar processes, and
> can also view ALL windows processes as well)?
>
> Hope that slight question makes sense and TIA.
>
> Me - Just Me

The 'Old Guy' has given you some really good advice - Moe, you've got my
respect as a giver of good advice, well-written.

Now, let me give you a windoze luser's perspective. Keep the
router/two-computer setup you've got. But use regular cat/5 cables, you
don't need to muck around with crossovers - that's what the router does
automagically.

My setup: I'm running two boxen, one under Fedora Core 5, the other under XP
Home edition, connected thru a router.

Your windoze and Linux boxen can talk all day long with no one the wiser or
less secure if you set things up correctly.

On the Windoze side of the house, I recommend antivirus, spybot, and
firewall software. I'm not trying to start a religious war, but I've had
good experience with Spybot Search and Destroy, AVG antivirus, and
ZoneAlarm. They're all available in a no-cost version, the all update quite
frequently, and they all do a reasonably good job with little or no
installation/setup/configuration headaches.

On the Linux side, I would recommend an upgrade to a newer version in the
interest of service life, interoperability, and whatnot. FC5 I *know* comes
with intrusion detection software, so SATAN/SANTA, Saint, etc. are not
needed.

Samba can be set to accept connections from one and only host. In your case,
it has to be the IP address of your router. And it can be set to accept
connections from a limited number (one, ideally) of users. Done this way,
you have to be the right person, coming from the right place to get Samba
to talk to you.

If you do that, and shut down all your other server daemons, you're secure,
so you don't need to worry overly much about intrusion.

HTH.


Similar ThreadsPosted
Request for input from someone who has hired or managed an ex-hacker January 25, 2005, 5:39 pm
simple network design August 13, 2007, 9:18 pm
RSA Security Conference 2005 - Computer Forensics Expert Advice Sought February 16, 2005, 12:15 am
Suggestions for a simple "childproof" encryption January 5, 2005, 2:09 pm
Re: Seeking simple VOIP program November 18, 2007, 3:39 pm
Are you financially frustrated? Relax! This is your answer. September 15, 2005, 11:03 pm
Device Authentication - The answer to attacks lauched using stolen passwords? September 2, 2006, 7:44 pm
Examination room computers accessed by tons of users: what's the answer? Biometrics? April 28, 2008, 2:44 pm
Viruses - Undergraduate Project May 24, 2007, 1:53 am
Proposal for cryptography project September 5, 2007, 5:19 am

The site map in XML format XML site map

Contact Us | Privacy Policy