RE: ESX Vmware Physically connected to different segments
- From: "Loupe, Jeffrey J" <JLoupe@xxxxxxxxxxxxxxx>
- Date: Mon, 28 Jan 2008 07:08:04 -0600
If everything is setup properly this configuration should be secure. The
problem comes with misconfiguration. It's exceedingly easy for a
careless admin to connect a vNic to the wrong vSwitch and allow traffic
meant for the DMZ onto the trusted network. In general we disallow this
practice unless only one or two trusted admins have control of the box.
Even then, we audit the configuration frequently.
-J
________________________________________________________________
Confidentiality Notice:
This E-Mail transmission (and/or the documents accompanying it)
may contain information belonging to the sender which is
confidential, privileged and/or exempt from disclosure under
applicable law. The information is intended only for the use
of the individual(s) or entity named above. If you are not
the intended recipient, you are hereby notified that any
disclosure, copying, distribution or the taking of any action
in reliance on the contents of this information is strictly
prohibited. If you have received this E-Mail transmission
in error, please immediately notify us by return E-Mail or
telephone to arrange for return of its contents including any
documents.
------------------------------------------------------------------------
This list is sponsored by: Cenzic
Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads
------------------------------------------------------------------------
- Follow-Ups:
- Re: ESX Vmware Physically connected to different segments
- From: Kurt Buff
- Re: ESX Vmware Physically connected to different segments
- References:
- ESX Vmware Physically connected to different segments
- From: Albert R. Campa
- Re: ESX Vmware Physically connected to different segments
- From: Kurt Buff
- ESX Vmware Physically connected to different segments
- Prev by Date: Re: Scanning for "live" hosts, nmap vs unicornscan (scanrand?)
- Next by Date: Re: Faxing and PCI DSS compliance
- Previous by thread: RE: ESX Vmware Physically connected to different segments
- Next by thread: Re: ESX Vmware Physically connected to different segments
- Index(es):
Relevant Pages
|
|