From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (qmail 3987 invoked by alias); 4 Dec 2009 09:40:30 -0000 Received: (qmail 3979 invoked by uid 22791); 4 Dec 2009 09:40:30 -0000 X-SWARE-Spam-Status: No, hits=-1.4 required=5.0 tests=AWL,BAYES_00,SARE_MSGID_LONG40,SPF_PASS X-Spam-Check-By: sourceware.org Received: from mail-iw0-f185.google.com (HELO mail-iw0-f185.google.com) (209.85.223.185) by sourceware.org (qpsmtpd/0.43rc1) with ESMTP; Fri, 04 Dec 2009 09:40:23 +0000 Received: by iwn15 with SMTP id 15so1407908iwn.10 for ; Fri, 04 Dec 2009 01:40:21 -0800 (PST) MIME-Version: 1.0 Received: by 10.231.61.195 with SMTP id u3mr817084ibh.12.1259919618895; Fri, 04 Dec 2009 01:40:18 -0800 (PST) In-Reply-To: References: Date: Fri, 04 Dec 2009 09:40:00 -0000 Message-ID: From: ratheesh k To: Tarmo Kuuse Cc: ecos-discuss@sources.redhat.com Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable X-IsSubscribed: yes Mailing-List: contact ecos-discuss-help@ecos.sourceware.org; run by ezmlm Precedence: bulk List-Id: List-Subscribe: List-Archive: List-Post: List-Help: , Sender: ecos-discuss-owner@ecos.sourceware.org Subject: Re: [ECOS] Re: Firewall in ecos X-SW-Source: 2009-12/txt/msg00011.txt.bz2 I have seen Many cable modems and Gateways (Routers ) running on ecos . There should be some other mechanism ??? Thanks, Ratheesh On Fri, Dec 4, 2009 at 1:57 PM, Tarmo Kuuse wrote: > ratheesh k wrote: >> >> =A0I am a newbie in ecos . I read that there is no netfilter support >> implemented in ecos =A0.Then How is security working in ecos ?? > > This is a very interesting question and I really hope for some authoritat= ive > answers. > > The Open/FreeBSD TCP/IP stacks in eCos are hopelessly out of date (i.e. > vulnerable). It's highly unlikely that servers and clients for Internet > services have been audited or tested with security in mind. Encryption is > not supported, although there is some unofficial port of OpenSSL - does t= hat > even work? Etc. > > I assume eCos to be usable only in trusted networks where security is not > needed. Connecting an eCos device to any public network is not a good ide= a, > unless this system is so unimportant that remotely crashing or breaking it > does not cause any harm. > > -- > Kind regards, > Tarmo Kuuse > > > -- > Before posting, please read the FAQ: http://ecos.sourceware.org/fom/ecos > and search the list archive: http://ecos.sourceware.org/ml/ecos-discuss > > -- Before posting, please read the FAQ: http://ecos.sourceware.org/fom/ecos and search the list archive: http://ecos.sourceware.org/ml/ecos-discuss