[Commotion-admin] [olsrd] OLSRd Provides Network Exposed Attack Surface (#7)

hawkinswnaf notifications at github.com
Wed Sep 11 20:55:52 UTC 2013


Just FYI: Although from the output of netstat this is not obvious, there are filters in place for these sockets. In our default olsrd.conf the plugin parameters lists an accept address range. The source of incoming connections is checked against these ranges before a connection is established. 

I agree that it would be better if the accept range controlled on which interface the plugins listen, but at least we are somewhat protected.  

---
Reply to this email directly or view it on GitHub:
https://github.com/opentechinstitute/olsrd/issues/7#issuecomment-24275586
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.chambana.net/pipermail/commotion-admin/attachments/20130911/9e67785a/attachment.html>


More information about the Commotion-admin mailing list