North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: How do you stop outgoing spam?

  • From: Rafi Sadowsky
  • Date: Tue Sep 10 06:28:36 2002

## On 2002-09-10 10:02 +0300 Petri Helenius typed:

PH> >
PH> If somebody is ignorant enough to implement IP over HTTP, why should
PH> they be accommodated? There are numerous reasons why there are other
PH> port numbers to TCP than 80 and other protocol numbers to IP than 6.

 Why do you think they're ignorant ?
Isn't TCP over HTTP is normally used to attempt bypassing of firewalls ?

 IMHO Firewall/Security admins are ignorant
if they don't take this into account

AFAIK you can tunnel IP over(at least):

 1) HTTP(not just use port 80 for non HTTP traffic)

 2) ICMP ...

 3) DNS queries(needs an external "custom" cooperating DNS)

-- 
	Rafi