36
StoneGate firewall client authentication detection
Firewalls
2003/11/14
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
Marc Ruef
marc dot ruef at computec dot ch
http://www.computec.ch
computec.ch
2004/11/13
1.4
Corrected the plugin structure and added the accuracy values in 1.4
tcp
2543
open|sleep|close|pattern_exists StoneGate firewall OR SG login:
90
This plugin was written with the ATK Attack Editor.
StoneGate Firewalls
Other solutions
Configuration
StoneGate firewalls provide on port tcp/2545 the possibility of remote administration. This port may be used by an attacker to gain privileged access. Especially over the Internet should this admin interface not be reachable.
Reconfigure the StoneGate Firewall so just the administrator can reach the port tcp/2545 from the internal network. Administration over the Internet is too dangerous.
20 minutes
Yes
Yes
Yes
Medium
6
6
6
6
Medium
Nessus is able to do the same check.
11762
Hacking Exposed: Network Security Secrets & Solutions, Stuart McClure, Joel Scambray and George Kurtz, February 25, 2003, 4th Edition, McGraw-Hill Osborne Media, ISBN 0072227427
http://www.computec.ch