27.06.2013 Views

Hack Security Pro.pdf - Index of

Hack Security Pro.pdf - Index of

Hack Security Pro.pdf - Index of

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Pmon<br />

NT Pmon is a process monitoring tool: it sends back information on active execution threads on the<br />

system.<br />

3.Anti port scan<br />

The methodology presented here is valid only for Linux. We are going to use s<strong>of</strong>tware called portsentry<br />

to detect and block the source <strong>of</strong> a port scan. You can download it from:<br />

www.psionic.com/abacus/portsentry<br />

To install it:<br />

tar –zxvf portsentry-x.tar.gz<br />

cd portsentry-x<br />

make linux<br />

make install<br />

When a scan is detected, portsentry can act following two methods:<br />

– By re-routing the packets coming from the source towards /dev/null.<br />

– By applying an iptables chain, so as to block the source.<br />

The configuration file is in the /usr/local/psionic/portsentry/ directory. Edit it to modify the base<br />

configuration:<br />

The <strong>Hack</strong>ademy DMP -185/209- SYSDREAM

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!