RE: HACMP and port scans

From: Steven Bishop (bishop@telus.net)
Date: 09/28/01


From: "Steven Bishop" <bishop@telus.net>
To: <bugtraq@securityfocus.com>
Subject: RE: HACMP and port scans
Date: Fri, 28 Sep 2001 10:33:25 -0700
Message-ID: <000301c14843$ae594820$4d64ae8e@corp.ads>

I have applied Maintenance Level 7 on AIX 4.3.3 and have tested agianst the
nmap scan
and this patch seems to have worked fine for us.

Steven Bishop
Telus Enterprise Solutions
(604)482-3027
bishop@telus.net

-----Original Message-----
From: Ali, Farrad [mailto:fali@microgeneral.com]
Sent: Tuesday, September 25, 2001 6:29 AM
To: 'Eoin D. Fleming'; bugtraq@securityfocus.com
Subject: RE: HACMP and port scans

I believe that this is related to snmpd dying when you port scan a box.
Applying
Maintenance Level 7 on AIX 4.3.3 seemed to fix the problem for us.

-----Original Message-----
From: Eoin D. Fleming [mailto:rtfm@eircom.net]
Sent: Monday, September 24, 2001 4:27 PM
To: bugtraq@securityfocus.com
Subject: HACMP and port scans

It appears that IBM's HACMP 4.4 clustering software can be induced to fail
simply by port scanning clustered machines, has anyone come accross this
vulnerability and is there a workaround?

Thanks,
RT



Relevant Pages

  • FW: Port scan causing system crashes
    ... Port scan causing system crashes ... We can help with the HACMP Cluster issue. ... BUGTRAQ Vulnerability 3358, "IBM HACMP Port Scan Denial of Service ...
    (Pen-Test)
  • Re: Built-in dual ethernet adapter & disk controllers (in 570) and HACMP
    ... I think the probability that your controller integrated chipset is ... the fact that you're only using one port host side ... Main spof is you have only on SCSI chain. ... HACMP cant help you in this case. ...
    (comp.unix.aix)
  • Re: HACMP and port scans
    ... Subject: HACMP and port scans ... > It appears that IBM's HACMP 4.4 clustering software can be induced to fail ... HACMP cluster servers to crash, ...
    (Bugtraq)
  • RE: HACMP and port scans
    ... Subject: HACMP and port scans ... I believe that this is related to snmpd dying when you port scan a box. ... Maintenance Level 7 on AIX 4.3.3 seemed to fix the problem for us. ...
    (Bugtraq)
  • Re: AIX is slow to login on port 22 and port 23
    ... CPU TID TSLOT PID PSLOT PROC_NAME ... AIX is slow to login on port 22 and port 23 ...
    (AIX-L)