Re: about dettecting different TTL value

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Le mercredi 03 mai 2006 à 13:18 +0800, Thomas Kuiper a écrit :
> I think you want to filter with ebtables (like some cable ISP's do) based on 
> the mac address. ttl is not good for that.

1. You can spoof MAC address, there's no big deal about it, even on
Windows. Most soho routers have a "MAC cloning" functionnality  that
exactly does this.

2. ISP only sees router's MAC address, may be 1 or 20 hosts behind it.


-- 
http://sid.rstack.org/
PGP KeyID: 157E98EE FingerPrint: FA62226DA9E72FA8AECAA240008B480E157E98EE
>> Hi! I'm your friendly neighbourhood signature virus.
>> Copy me to your signature file and help me spread!



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux