Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




firewall-wizards logo Firewall Wizards mailing list archives

VLAN Security
From: Jeff Boles <bolesjb () yahoo com>
Date: Tue, 8 Jun 2004 10:18:02 -0700 (PDT)

FW List:

Anyone care to voice their consensus on contemporary
VLAN implementations as a security measure?  I'm
looking at a WAN design using a newly rolled out
MetroEthernet product, and provider network is built
on catalyst switches and VLAN's.  Every customer rides
a separate VLAN.  The provider's intention is to also
provide ISP services across this cloud.

Additionally, I have some internal needs that it is
tempting to fit into VLAN's - i.e. I need to load
balance some public traffic across sites, and I'm
tempted to do it by throwing the traffic in an
encrypted tunnel, and dropping it into a separate VLAN
across that same MetroEthernet cloud.

All of these solutions ride the same wire.  I used to
have some good educational material on the
vulnerabilities in VLAN's, but I no longer have it,
and I'm having little success in finding new material.

Anybody care to voice an argument on on VLAN integrity
in the provider network?
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]