Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: Re: [PEN-TEST] Spoofing switched networks

Re: [PEN-TEST] Spoofing switched networks

From: Lindqvist, Johan <johan.lindqvist_at_DRIFTBOLAGET.COM>
Date: Tue, 6 Feb 2001 17:48:45 +0100

Hi.

> Actually, sniffing isnt' that heard either. There are
> several ways to do
> it such as making the switch you are a trunk port and you need all the
> traffic. In order words, don't put a switch and VLANs in
> place and expect
> that to be your security because they can be defeated.

As for switching, I'm fully aware that it's not a security mechanism that
cannot be defeated easily. However that VLANs have no security impact is
news to me. Since VLANS are defined on physical switch port basis, how could
they be used to receive or send traffic on other VLANs?

/Johan

-- 
Johan Lindqvist
Security Specialist
DRIFTBOLAGET AB, MÖLNDALSVÄGEN 81, 412 63 GÖTEBORG, SWEDEN
PHONE: +46 8-23 92 00 FAX: +46 709-73 46 70
DIRECT: +46 31-760 43 07 MOBILE: +46 709-73 87 07 
johan.lindqvist@driftbolaget.com http://www.driftbolaget.com 
Received on Feb 06 2001
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos