Re: Find out the subnetting of a company

From: Miles Stevenson (miles_at_mstevenson.org)
Date: 07/20/04

  • Next message: J.A. Terranson: "Re: Find out the subnetting of a company"
    To: pen-test@securityfocus.com
    Date: Tue, 20 Jul 2004 12:34:33 -0400
    
    

    On Tuesday 20 July 2004 12:22 pm, J.A. Terranson wrote:

    > Dangr Will Robinson!
    >
    > This is not necessarily so. Early BSD and BSD derived systems/devices may
    > also answer to broadcasts on the "lower end". Historically, the broadcast
    > was originally designed to *be* the same as the network address, it is
    > only recently that the last address has become the standard.
    >
    > There are any number of older, and in somecases (like the Nortel CVX call
    > concentrators) newer devices answering on both the top and bottom
    > addresses.

    I was not aware of this, but great point! It would be interesting to try out
    some experimentation with some of these older BSD systems and incorporate
    some clever workarounds. If anyone has any VM images of such a case that they
    would like to share (licenses permitting of course) I would love to toy with
    it.

    Hmmmm. Perhaps a little more R&D on the topic would be helpful to the infosec
    community (assuming there are still questions on this topic that have yet to
    be answered in a public write-up). It might be worth while to take a look at
    how some of the automated network mapping tools out there handle this. Maybe
    there are some improvements to be made.

    Comments/Suggestions?

    -- 
    Miles Stevenson
    miles@mstevenson.org
    PGP FP: 035F 7D40 44A9 28FA 7453 BDF4 329F 889D 767D 2F63
    

  • Next message: J.A. Terranson: "Re: Find out the subnetting of a company"

    Relevant Pages

    • Re: strcpy() - dangerous? [Was Re: gets() - dangerous?]
      ... >>>Why would anyone define a macro that just calls memmove with its ... >> Possibly someone who learnt on BSD before memmove was standardised by ... So bcopy is not really a part of the standard? ...
      (comp.lang.c)
    • Re: strcpy() - dangerous? [Was Re: gets() - dangerous?]
      ... Only the C Standard is on-topic here. ... >> FreeBSD or BSD or whatever is completely off-topic. ... >> destination arguments in the opposite order from the Standard C memcpy ... I have made the mistake of assuming ...
      (comp.lang.c)
    • Re: Virginia Tech: chickenous?
      ... >> Jefferson N Glapski wrote: ... >>> That's because they don't have a BSD. ... >> stated from the first post because Penn state did the same thing. ... > Obviously, the standard is different. ...
      (rec.sport.football.college)
    • Re: Newbie BSD lib question
      ... > Is there an introduction or guide to the BSD C library? ... Try asking on a BSD or Unix specific newsgroup, ... deal with the standard language and standard library. ...
      (comp.lang.c)
    • Re: Convert Bash shell script to Korn shell script
      ... -cmin is a GNU (and BSD) specific option. ... option in standard find. ... Note that -cmin is for the inode last change time, ...
      (comp.unix.shell)