Been puzzling over Fred Cohens Deception Toolkit and stumbled on a few minor configuration errors, the hosts.allow field should read;
in.telnetd: all: twist /pathname/Telnet.pl %a 80 %u %d testing
Not what it originally did which was to point people directly into the directory where it had been installed, also noticed it dosnt setup a access.control file in the specified $PATH you have to do that yourself. Delete the Telnetd directory, its an out of date copy of telnet, doh!
Also check the default port scripts, some of the very last ones still point to fc@all.net instead of your own eMail for the alerts.
But once corrected works nicely. . Now I can core dump myself all day long!
Subscribe to:
Post Comments (Atom)

No comments:
Post a Comment