[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] security



> > You are right. Unless the network is segmented by a switch
> > anyone with root access on any of the machines on that network can
> > sniff all the packets on that network - including your packets.
>
> Actually, I was just reading an article entitled "why your
> switched network isn't safe from sniffers". Essentially, they
> have ways to defeat switches partitioning the network. One of the
> ways I recall right now was to flood the switch with more than 255
> fake MAC addresses, causing the switch to fail open and revert to
> acting like a hub, then sniffing. Or screwing with the broadcasting
> of MAC addresses to the swtich and confusing it and/or having double
> ones. The days of switched protection are gone. I can find the
> article again if you are interested... Mail me off-list.

I'd love to see this article, and there are probably others who would
too. Can you put it up somewhere, then post a link? If not, email it to
me and I'll gladly put it up with a link.

--
Rodolfo J. Paiz
rpaiz@xxxxxxxxxxxxxx <mailto:rpaiz@xxxxxxxxxxxxxx>