next up previous
Next: General section on CGI Up: Application layer issues Previous: Bounce Attacks

Don't trust ports below 512

XXX: This doesn't belong here - this is really a network layer thing

This is just a corollary to the preceding section. Many network services like rlogin, portmapper etc trust ports below 1024 to some degree. However because of problems like the one described above, they restrict the trusted port range to 512 through 1023 nowadays.



Olaf Kirch 2002-01-16