RE: Network scanning

From: Jason Armstrong (jarmstrong_at_technicacorp.com)
Date: 08/08/03

  • Next message: dave kleiman: "RE: Using non-printable characters in passwords"
    To: security-basics@securityfocus.com
    Date: Fri, 8 Aug 2003 08:32:41 -0400 
    
    

    Remember that MAC addresses can be spoofed.

    -----Original Message-----
    From: Rory [mailto:nazgul@csn.ul.ie]
    Sent: Thursday, August 07, 2003 6:23 PM
    To: netsec novice
    Cc: security-basics@securityfocus.com
    Subject: Re: Network scanning

    for the wireless stuff I would just do mac filtering, any host that is not
    in the list of mac address is not allowed to join the wireless network. Of
    course the network traffic can still be sniffed using any laptop but you can
    just encrypt the traffic over wireless as you suggested. The mac filtering
    is something easy to setup and makes sure you don't end up handing out
    access to the network to some dude out in in the parking lot.

    AS for the other stuff i'm not too sure as SNMP is not something I have
    used, running a snort box in the network checking for scanning activity is
    also a good precaution that way you are also guarding against any unhappy
    employee's looking to make your job harder.

    On Thu, 7 Aug 2003, netsec novice wrote:

    > Are there tools out there that would allow system administrators to be
    > notified when a new workstation attaches to a network? I'm thinking
    > both wireless and ethernet in this case. SNMP maybe? I am in a
    > credit union environment and my concern is that someone would be able
    > to steal an existing jack or a jack that is not physically protected
    > but live and be able to capture traffic or do reconaissance. We don't
    > have Wireless access at this point but may look to it in the future.
    > My only thought in that case would be to encrypt all traffic since
    > wireless security is a bit scary at this point. Any ideas?
    >
    > _________________________________________________________________
    > The new MSN 8: smart spam protection and 2 months FREE*
    > http://join.msn.com/?page=features/junkmail
    >
    >
    > ----------------------------------------------------------------------
    > -----
    >
    ----------------------------------------------------------------------------
    >

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: dave kleiman: "RE: Using non-printable characters in passwords"

    Relevant Pages

    • TidBITS#785/27-Jun-05
      ... Jeff Carlson continues his exploration of computerized poker ... and Adam examines both the Canary Wireless ... Rogue Amoeba's Audio Hijack Pro ... A Canary in the Network ...
      (comp.sys.mac.digest)
    • Re: Linksys NAS200 Network Storage adapter
      ... The only two wireless network settings that are of any consequence are the SSID and the encryption method and password. ... either click the "Print Network Settings" button on the final screen of the Wizard or simply access the appropriate XML file and get at them that way and then use the information to configure the router manually as I explained earlier. ... I've read thru some of the MS web site on that product and it appears to do everything a NAS will do plus other cool features, such as, with an xbox360 with the wireless adapter, I can stream my video/pics to my TV for family viewing. ...
      (microsoft.public.windowsxp.network_web)
    • [NMRC Advisory] Microsoft Windows Wireless Exposure on Laptops
      ... Application: Wireless Network Connection ... This advisory documents an anomaly involving Microsoft's Wireless Network ... If a laptop connects to an ad-hoc network it can later start ... This is known as a Link-Local address, and by default Link-Local is turned on on all Windows platforms on all interfaces, including wireless interfaces. ...
      (Bugtraq)
    • only 1299.99
      ... With the arrival of the Sony Vaio VGN-UX280P Micro PC, ... Advanced Wireless Mobility ... integrates wireless Wide Area Network, ... and check e-mail without having to plug in your Sony Vaio notebook PC, ...
      (comp.periphs.printers)
    • RE: palm VIIx wireless modem
      ... Here is a Wireless LAN Security FAQ, ... What are solutions to minimizing WLAN risk? ... that connects clients to the internal network. ...
      (Security-Basics)

  • Quantcast