Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
CVE-2014-0160 mitigation using iptables
Apr 09 2014 10:01AM
Fabien Bourdaire (lists ecsc co uk)
Following up on the CVE-2014-0160 vulnerability, heartbleed. We've
created some iptables rules to block all heartbeat queries using the
very powerful u32 module.
The rules allow you to mitigate systems that can't yet be patched by
blocking ALL the heartbeat handshakes. We also like the capability t...
[ more ]
Copyright 2010, SecurityFocus