Home page logo
/

basics logo Security Basics mailing list archives

Re: Identifying a computer
From: "Meritt James" <meritt_james () bah com>
Date: Fri, 05 Dec 2003 10:30:52 -0500

Wire dikes work well.  Did that in a previous life.  And the "disable
and see who gripes" works well - used that one, too.

Jim

Jason Balicki wrote:

1) Sniff the traffic and get the mac address
2) Look up the mac on your switch and find out what port it is on
3) disable the port or go yank it out of the wall.

4) locate other end of cable
5) whip guilty party with said cable until guilty party passes out
6) tie up guilty party with said cable
7) lock guilty party in supply closet
8) demand "it will put the lotion on it's skin, or it gets the cat-5 again"

You won't have any more trouble with the guilty party.

No, no, I'm not bitter.

--J(K)

---------------------------------------------------------------------------
----------------------------------------------------------------------------

-- 
James W. Meritt CISSP, CISA
Booz | Allen | Hamilton
phone: (410) 684-6566

---------------------------------------------------------------------------
----------------------------------------------------------------------------


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault