Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Pfsense block program?

    Scheduled Pinned Locked Moved Firewalling
    6 Posts 4 Posters 4.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • I
      iamthed
      last edited by

      simple question maybe sounds silly..
      how to block angry ipscanner?
      or i juz block the icmp?? is it solve the problem?

      is pfsense can do that?

      i'm dumb.. but i have a desire to learn

      1 Reply Last reply Reply Quote 0
      • M
        Monoecus
        last edited by

        Use snort. There you can block any sort of scanners. On the other hand, scanners do not really hurt.

        1 Reply Last reply Reply Quote 0
        • I
          iamthed
          last edited by

          @Monoecus:

          Use snort. There you can block any sort of scanners. On the other hand, scanners do not really hurt.

          so what attack do u think that really hurtfull  :P

          i'm dumb.. but i have a desire to learn

          1 Reply Last reply Reply Quote 0
          • GruensFroeschliG
            GruensFroeschli
            last edited by

            DDoS
            buffer overflow exploits (if present in the underlaying system/driver)
            More a problem of the hosts/clients behind the pfSense: trojans, various ways of code injection.
            PEBKAC exploits (send an email to an employee with fake sender: "please change your password to xyz" and then log in with his credentials.)

            I think you can think of more attacks yourself or just use google…

            We do what we must, because we can.

            Asking questions the smart way: http://www.catb.org/esr/faqs/smart-questions.html

            1 Reply Last reply Reply Quote 0
            • I
              iamthed
              last edited by

              @GruensFroeschli:

              DDoS
              buffer overflow exploits (if present in the underlaying system/driver)
              More a problem of the hosts/clients behind the pfSense: trojans, various ways of code injection.
              PEBKAC exploits (send an email to an employee with fake sender: "please change your password to xyz" and then log in with his credentials.)

              I think you can think of more attacks yourself or just use google…

              okay how bout the anticipation the attack using PF sense?
              1.DDOS = juz turn off the ICMP.. no client can ping server/router is it right?
              2.More a problem of the hosts/clients behind the pfSense = juz install antivirus and make it limited account (is it solve ?)
              3.buffer overflow = no idea how to solve it
              4.PEBKAC exploit = actually that's not a threat if we using limited account.. right?

              i'm dumb.. but i have a desire to learn

              1 Reply Last reply Reply Quote 0
              • C
                cmb
                last edited by

                @iamthed:

                Doesn't matter. Any DDoS attack is going to knock you off the Internet unless you have a huge amount of bandwidth. State limiting can be effective here if you have a huge amount of bandwidth, otherwise there just isn't anything you can do, you're reliant on your ISP.

                @iamthed:

                Those things help, but don't solve the problem. Lot more to this than can be offered in a forum post, check out some security books.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.