Re: DoS of LAN via D-Link switches

From: Neil Watson (bugtraq_at_watson-wilson.ca)
Date: 03/30/05

  • Next message: dcrab_at_hackerscenter.com: "Re: Multiple Sql injection, and multiple XSS vulnerabilities in Photopost PHP Pro Photo Gallery Software."
    Date: Wed, 30 Mar 2005 09:21:14 -0500
    To: bugtraq@securityfocus.com
    
    

    From: Frank Bures [mailto:lisfrank@chem.toronto.edu]
    Sent: Tuesday, March 29, 2005 4:41 AM
    > In my opinion, a switch should be immune to this admittedly insane
    > manipulation. Otherwise, one can DoS the entire network just
    > by shorting
    > two RJ-45 network outlets in one's office together.

    I believe what you are describing is officially called a bridge loop. A
    bridge loop occurs when a switch, or stack of switches are plugged into
    themselves. The result is that the switches report the same MAC address
    at multiple ports. The solution to this is called Spanning Tree
    Protocol. STP is a set of algorithms that help switches remove
    redundant MAC entries.

    Reference:
    http://www.oreillynet.com/pub/a/network/2001/03/30/net_2nd_lang.html

    -- 
    Neil Watson               | Gentoo Linux
    Network Administrator     | Uptime 12 days
    http://watson-wilson.ca   | 2.6.11.4 AMD Athlon(tm) MP 2000+ x 2
    

  • Next message: dcrab_at_hackerscenter.com: "Re: Multiple Sql injection, and multiple XSS vulnerabilities in Photopost PHP Pro Photo Gallery Software."

    Relevant Pages

    • Re: Single domain two IP subnets
      ... hardware or any of the complexities of "network hardward ... I never criticize anyone's typing as long as the words can ... Cisco ISL VLANS are history. ... Newer Cisco switches don't even support ISL ...
      (microsoft.public.win2000.dns)
    • Re: new switching technologies
      ... mixed with stackable switches. ... i havent used these kit versions, but this is maybe the 5th or 6th iteration ... of a fix looking for a problem for L2 network resilience / load balancing. ... optimal one is what routing protocols were designed for and what they are ...
      (comp.dcom.lans.ethernet)
    • Re: SunRay 2FS MTU
      ... What type of switches and network cards are you using? ... Cisco 6509 with 100Mb modules running fiber to the SunRay MTRJ ports. ... Check that switches and Suns/Sun Ray are all using 100FDX (typically ... your switch needs to be able to buffer sufficent packets. ...
      (comp.sys.sun.admin)
    • Re: priviledge escalation techniques
      ... you've all the tools you need, and you can install additional ones (to ... If I press that BEFORE login, a CLI as SYSTEM is started, I can launch ... If the network is switched, perhaps you need an ARP poisoning tool. ... switches) in such a way that you can fool an ARP poisoning attempt. ...
      (Pen-Test)
    • Re: LISP for web
      ... Any large scale web app that is business critical is based on a few ... -> So you need at least two routers, two switches, two machines ... ... Load balancing is done based on content and on network traffic ...
      (comp.lang.lisp)