<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Web Publisher Security</title>
	<atom:link href="http://www.publishersecurity.com/comments/feed" rel="self" type="application/rss+xml" />
	<link>http://www.publishersecurity.com</link>
	<description>Information security blog to help web publishers stay protected</description>
	<lastBuildDate>Fri, 22 May 2009 10:51:55 -0700</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on VPN Phase 1 fails &#8211; Checkpoint to Cisco &#8211; Update by VPN Phase 1 fails - Checkpoint to Cisco</title>
		<link>http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco-update/comment-page-1#comment-252</link>
		<dc:creator>VPN Phase 1 fails - Checkpoint to Cisco</dc:creator>
		<pubDate>Fri, 22 May 2009 10:51:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/?p=36#comment-252</guid>
		<description>[...] Update - here is why [...]</description>
		<content:encoded><![CDATA[<p>[...] Update &#8211; here is why [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on VPN Phase 1 fails &#8211; Checkpoint to Cisco by VPN Phase 1 fails - Checkpoint to Cisco - Update</title>
		<link>http://www.publishersecurity.com/vpn-phase-1-fails-checkpoint-to-cisco/comment-page-1#comment-251</link>
		<dc:creator>VPN Phase 1 fails - Checkpoint to Cisco - Update</dc:creator>
		<pubDate>Fri, 22 May 2009 10:45:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/?p=17#comment-251</guid>
		<description>[...] VPN Phase 1 fails - Checkpoint to Cisco - Update May 22nd, 2009 by devnull &#124; Filed under Uncategorized.    A while back i wrote a post about a problem setting up a vpn tunnel between a cisco router and a checkpoint firewall. When i tried to open he tunnel, the following error showed up in the log files: “Duplicate Phase 1 packet detected.  Retransmitting lastpacket.” Back then i didnt have the time to research the problem, so i still owe you an explanation:  By default, main mode is selected for phase 1 ike on the checkpoint configuration. The router was i trying to connect with, was configured with aggressive mode.  So what was the problem? The two modes operate differently - Main mode uses 6 packet in the ike phase 1 and aggressive mode uses only 3. Aggressive mode identity packets are sent in clear text. This means one can sniff the identity traffic. The main mode first allow the encryption of the identity packets, and only then send them. While the aggressive mode is faster, as it requires less resources, the main mode is considered more secure. [...]</description>
		<content:encoded><![CDATA[<p>[...] VPN Phase 1 fails &#8211; Checkpoint to Cisco &#8211; Update May 22nd, 2009 by devnull | Filed under Uncategorized.    A while back i wrote a post about a problem setting up a vpn tunnel between a cisco router and a checkpoint firewall. When i tried to open he tunnel, the following error showed up in the log files: “Duplicate Phase 1 packet detected.  Retransmitting lastpacket.” Back then i didnt have the time to research the problem, so i still owe you an explanation:  By default, main mode is selected for phase 1 ike on the checkpoint configuration. The router was i trying to connect with, was configured with aggressive mode.  So what was the problem? The two modes operate differently &#8211; Main mode uses 6 packet in the ike phase 1 and aggressive mode uses only 3. Aggressive mode identity packets are sent in clear text. This means one can sniff the identity traffic. The main mode first allow the encryption of the identity packets, and only then send them. While the aggressive mode is faster, as it requires less resources, the main mode is considered more secure. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How to FAIL at landing a job in Information Security by commit</title>
		<link>http://www.publishersecurity.com/how-to-fail-at-landing-a-job-in-information-security/comment-page-1#comment-50</link>
		<dc:creator>commit</dc:creator>
		<pubDate>Sat, 13 Sep 2008 08:05:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/?p=21#comment-50</guid>
		<description>Hehe, LoL.

Met some ppl like you say. Told them byebye at the beginning.

Hate to waste my time on fools.</description>
		<content:encoded><![CDATA[<p>Hehe, LoL.</p>
<p>Met some ppl like you say. Told them byebye at the beginning.</p>
<p>Hate to waste my time on fools.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSH Attacks Rising by devnull</title>
		<link>http://www.publishersecurity.com/ssh-attacks-rising/comment-page-1#comment-20</link>
		<dc:creator>devnull</dc:creator>
		<pubDate>Wed, 25 Jun 2008 08:24:03 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/?p=18#comment-20</guid>
		<description>Thanks for the feedback. 
I will try to write more when i get the time. 

Which certification are you aiming for?</description>
		<content:encoded><![CDATA[<p>Thanks for the feedback.<br />
I will try to write more when i get the time. </p>
<p>Which certification are you aiming for?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSH Attacks Rising by Daniel Craig</title>
		<link>http://www.publishersecurity.com/ssh-attacks-rising/comment-page-1#comment-19</link>
		<dc:creator>Daniel Craig</dc:creator>
		<pubDate>Tue, 24 Jun 2008 12:03:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/?p=18#comment-19</guid>
		<description>Hi, I was looking around for a while searching for sans certification and I happened upon this site and your post regarding , I will definitely this to my sans certification bookmarks!</description>
		<content:encoded><![CDATA[<p>Hi, I was looking around for a while searching for sans certification and I happened upon this site and your post regarding , I will definitely this to my sans certification bookmarks!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Secure login for your Linux server by Web Publisher Security - Information security blog to help web publishers stay protected &#187; SSH Attacks Rising</title>
		<link>http://www.publishersecurity.com/secure-login-for-your-linux-server/comment-page-1#comment-17</link>
		<dc:creator>Web Publisher Security - Information security blog to help web publishers stay protected &#187; SSH Attacks Rising</dc:creator>
		<pubDate>Sun, 18 May 2008 12:02:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/secure-login-for-your-linux-server#comment-17</guid>
		<description>[...] Secure login for your Linux server [...]</description>
		<content:encoded><![CDATA[<p>[...] Secure login for your Linux server [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Linux Firewall VS Commercial Firewalls by devnull</title>
		<link>http://www.publishersecurity.com/linux-firewall-vs-commercial-firewalls/comment-page-1#comment-3</link>
		<dc:creator>devnull</dc:creator>
		<pubDate>Thu, 12 Jul 2007 15:10:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/linux-firewall-vs-commercial-firewalls/#comment-3</guid>
		<description>Thanks for the comment,

I used checkpoint as an example, because this is the product i am most familiar with. I sure have my complaints, and a share of all-nighters due do issues with their products. 

What products do you prefer, open source or commercial?</description>
		<content:encoded><![CDATA[<p>Thanks for the comment,</p>
<p>I used checkpoint as an example, because this is the product i am most familiar with. I sure have my complaints, and a share of all-nighters due do issues with their products. </p>
<p>What products do you prefer, open source or commercial?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Linux Firewall VS Commercial Firewalls by spenser</title>
		<link>http://www.publishersecurity.com/linux-firewall-vs-commercial-firewalls/comment-page-1#comment-2</link>
		<dc:creator>spenser</dc:creator>
		<pubDate>Tue, 10 Jul 2007 18:21:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.publishersecurity.com/linux-firewall-vs-commercial-firewalls/#comment-2</guid>
		<description>Like pc_user said at digitalpoint, thanks for posting the article.

However, my counterpoint is that having used a variety of firewalling systems, checkpoint is my least desired option. Different strokes, for different folks and all that.</description>
		<content:encoded><![CDATA[<p>Like pc_user said at digitalpoint, thanks for posting the article.</p>
<p>However, my counterpoint is that having used a variety of firewalling systems, checkpoint is my least desired option. Different strokes, for different folks and all that.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
