Re: scan ports only

Andy Smith <[email protected]> Thu, 15 Sep 2005 10:21:56 +0000
Newsgroups gmane.network.irc.bopm
Message-ID <[email protected]>
On Thu, Sep 15, 2005 at 09:17:32AM +0400, [email protected] wrote:
> >> How I can only scan ports for proxy-checking and DO NOT use dnsbl?
> >> I found option only for listing and don't scan, but I need scan
> >> without listing in dnsbl.
> >> It's posible?
> 
> AS> Don't define any DNSBLs?
> AS> Did you even try that?
> 
> No, I want check all host in dnsbl, exclude some hostmasks.
> I found exception for _all_ scans, but I need exeption only for
> dnsbl-checks.

Okay well firstly that's not at all clear in your first message, and
secondly can I ask why you would want to allow known open proxies
that are in DNSBLs onto your network?

If it's because you're using DNSBLs which have lots of false
positives then you probably should rethink using them, as maintaining
exceptions rapidly gets tiresome.

I don't think there is a way to do this purely in the config of
bopm.  What you could do is apply Mark Bergsma's whitelists patch
(look on wiki.blitzed.org/FAQ/BOPM for it) and then run a DNSBL of
your own as a whitelist.  But that's kind of advanced.

-- 
Andy Smith -- Occasional BOPM Developer And Support Monkey.  Please copy
all BOPM support queries to the BOPM list, _not_ just directly to me!
If I've helped you with BOPM then please check my wishlist!
http://www.amazon.co.uk/exec/obidos/registry/23IJ4U7N4J3X9
signature.asc (application/pgp-signature, 189 B)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFDKUtEIJm2TL8VSQsRAkv+AKCgCwRhHhKj4Sjl3Bw3WsizjT9aRgCfeWU6
fUV5BBjyFVb+UK8uMLcUbRo=
=FdgP
-----END PGP SIGNATURE-----