Firewall Wizards mailing list archives

Re: [FW1] Scary traffic - long


From: roger nebel <roger () homecom com>
Date: Mon, 21 Dec 1998 11:02:21 -0500

RFC 1350 (ftp://ftp.isi.edu/in-notes/rfc1350.txt) mentions nothing about
broadcast, perhaps that's a local implementation deviation by
someone...i'd be interested in how / where you've seen that use.  

Hendrik Visage wrote:

AFAIK: Unfortunately, tftp DO have a broadcast "option", but it should be only in LAN
context, it sends out the broadcast, and then all the tftpservers will check if they
have the requested file, and then reply if they DO have the file.

tftp is also "dangerous" in the sense that it's UDP, send out to a port, and the
server sends out via another port. Not all that easy to have a stateful inspection
code for tftp, and FW-1 doesn't handle it as "nicely" as "standard" ftp :((

Attachment: vcard.vcf
Description: Card for Roger Nebel


Current thread: