Re: ipforwarding enabled, what can I do

From: Forrest Rae (forrest@code-lab.com)
Date: 08/20/01


Message-ID: <3B813243.6491B44A@code-lab.com>
Date: Mon, 20 Aug 2001 10:52:35 -0500
From: Forrest Rae <forrest@code-lab.com>
To: PEN-TEST@securityfocus.com
Subject: Re: ipforwarding enabled, what can I do

Hi,

I don't normally post to this list, so if I'm completely wrong, don't
beat me up. :) If you had the private snmp string, could you write to
the route tables? There might be a snmp option for setting
bi-directional routing?

-Forrest

Vladimir Parkhaev wrote:
>
> I am doing a vulnerability assesment for one of our clients. One
> of their boxes is a multihomed Solaris server with ipforwarding enabled.
> IP addresses are available via snmp with default community string.
>
> I tried to use this box as a gateway to internal network coming
> from the Internet without success. I also looked at source
> routing but did not find any tools (Net::RawIP does not seem
> to support IP options).
>
> Does anybody know how I can use this box to do routing for me?
>
> Thanks.

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • Re: Command line network sniffing tools on NT/W2K
    ... upload the libpcap and tcpdump, just do a large packet capture, and ... You could also write a script for the win2k's, that enables snmp on those ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: ipforwarding enabled, what can I do
    ... Try with a tool which allows source routing. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: NT snmp
    ... :send an snmp set. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • NT snmp
    ... Target is an NT4 box with snmp setup with "Read/Create" permissions on one ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: NT snmp
    ... >:send an snmp set. ... That's why im looking for a SNMP set DoS, which will work with a spoofed ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)