pen test VPN

From: cdowns (cdowns@skillsoft.com)
Date: 02/25/02


Date: Mon, 25 Feb 2002 09:06:34 -0500
From: cdowns <cdowns@skillsoft.com>
To: pen-test@securityfocus.com

I have several networks with VPN ( Intel Roadwarrior ) and ( Ipsec
FreeS/WAN ). What I have done is Place SNORT on all
gateways with a nice tight ruleset ( Added rules for known exploits that
don't exist in Rulebase ) and then actually attack
through ( Using a VPN Client or Other side ) as if A host was Hijacked,
Making sure IDS will grab all data that passes
through my VPN networks to my internal networks. We all know that VPN
does nothing more then encrypt Data. We need to
make sure that the data being transfered to our interal networks is
actually Good Data.

~!>D

--
---------------------------------
  Network Security Administrator
      Skillsoft Corporation
    http://www.skillsoft.com
      cdowns@skillsoft.com
 "You can't point and click your
   way to super cracker status"
---------------------------------

---------------------------------------------------------------------------- This list is provided by the SecurityFocus Security Intelligence Alert (SIA) Service. For more information on SecurityFocus' SIA service which automatically alerts you to the latest security vulnerabilities please see: https://alerts.securityfocus.com/



Relevant Pages

  • Re: ethics of approaching vulnerable prospective clients
    ... ethics of approaching vulnerable prospective clients ... Of interest especially are clients with wireless networks. ... site security, web application security etc. ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: ethics of approaching vulnerable prospective clients
    ... once you intentionally associate with a wireless access point that isn't ... > Of interest especially are clients with wireless networks. ... > site security, web application security etc. ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Dell AximX3i Wireless PAN/LAN
    ... I'm using an Axim X3i and running WiNC on it; ... networks; pending you have the SSID off hand... ... The VPN included with Windows ... Symbol CF wireless card. ...
    (microsoft.public.pocketpc.wireless)
  • RE: [fw-wiz] Worms, Air Gaps and Responsibility
    ... Internet (albeit over VPN tunnels). ... Since a lot of networks span multiple sites, ...
    (Firewall-Wizards)
  • Re: [SLE] Is a VPN the right thing to use here?
    ... > Due to current circumstances, I have two separate networks, L and R, on ... For this a VPN is the best solution, IMO, and some might go so far as to ... including the two routers, as if they were working under "normal" ... The temporary router has two functions. ...
    (SuSE)