Author: James Courtier-Dutton Date: To: Hampshire LUG Discussion List Subject: Re: [Hampshire] linux people don't listen and know very little in
reality
On 03/03/2008, Andy Smith <andy@???> wrote: > Funnily enough, most "security experts" don't seem to know what they
> are talking about either..
>
> "You need to disable ping reply on your web farm as it could allow
> enumaration of hosts."
>
> "Can't they just enumerate them by a TCP connect scan of port 80
> then?"
>
> "Er.."
>
> Cheers,
>
> Andy
>
Yes, and security experts who only turn up to an Man-Machine-Interface
(MMI) design workshop and skip the software design workshops!!!