Re: [Fwd: Layer 2 Switches]

From: peyo (peyo_at_netbg.com)
Date: 10/05/04

  • Next message: GuidoZ: "Re: forensics tools - preserving data?"
    To: security-basics@securityfocus.com
    Date: Tue, 5 Oct 2004 09:29:35 +0300
    
    

    Hi!

    I suggest you to visit this link:
    http://www.digitalsol.net/tinyip.htm

    I have some pieces from this module
    and use them for similar function.

    I'm not sure, but the price is really low per module (see the
    pricelist..maybe 20-22 USD), and
    attached to 8 port switch with RTL chipset you receive a really good
    manageable switch with port-based and 802.1q. BTW on this site you can find
    free software for tinyIP and switch control(via snmp) or of course you can
    write your own.

    The control module can be protected too via access MACs, skip broadcast
    option, 802.1q tag etc. Once you configure the switch, you can simply remove
    the control module(tinyIP) or can leave it connected(and have permanent
    online control).

    Another suitable (and very useful for me:) ) function is, that tinyIP can
    restart the switch, if he become unreachable (echo reply loss).

    I hope, this can help.

    Regards:
    Peyo

    On Friday 01 October 2004 17:17, Chris Scott wrote:
    > They may have features for improving security. For example:
    > - restricting which switch ports can communicate with each other
    > - defining MAC addresses to prevent flooding of frames to all ports
    > - using VLANs to isolate a management network from the operational network
    >
    >
    > -------- Original Message --------
    > Subject: Layer 2 Switches
    > Date: Thu, 30 Sep 2004 21:03:10 +0100
    > From: Andy Paton <andy.paton@gmail.com>
    > Reply-To: Andy Paton <andy.paton@gmail.com>
    > To: security-basics@securityfocus.com
    >
    > Hi All
    >
    > I'm building a new network & firewall implementation with a DMZ.
    >
    > I need basic L2 switch functionality in the DMZ and between the
    > firewall, should I avoid the more expensive switches with management?
    > as they have more potential for bugs/holes etc..
    >
    >
    > Thoughts please,
    > Andy

    -- 
    ---
    Peyo Todorov
    senior network administrator
    University of Mining and Geology
    "St. Ivan Rilski"
    

  • Next message: GuidoZ: "Re: forensics tools - preserving data?"

    Relevant Pages

    • RE: IP address conflicts
      ... If you get a network vendor like Network Hardware Resale ... >> It's amazing how money will appear out of thin air if certain oxen get ... the switch you are suggesting I cannibalise uses the EtherToken ... When dealing with a bureaucracy I have found the most effective method is ...
      (freebsd-questions)
    • Re: ConnectComputer Problem
      ... I'm a little confused by your network configuration. ... Switch2 --- SBS Server ... switch has internet access all the time, the second switch has the client ... NICs ...
      (microsoft.public.windows.server.sbs)
    • Re: Help with long term network problem
      ... Using a CNET network switch connected to a CNet Wireless G router Model ... Having the chart listing all of the computers is a great start. ... /all" shows only an Intel 2200BG WiFi connection - no Ethernet is apparent. ...
      (microsoft.public.windowsxp.network_web)
    • Re: LAN ip subnet is moving off from a bigger enterprise
      ... The host company runs Cisco ... Connect your switch to this ... At the CBO the network is 10.23.1.x and the gateway ... WS1 WS3 SBS HP4000 ...
      (microsoft.public.windows.server.sbs)
    • Re: Ethernet network wiring ?s
      ... >> the planned network is designed correctly and for my own education on ... >> find I that I have a hub in my office that I used at some point in the ... > A switch is an active device. ... > the ports that have the ethernet address the message is intended ...
      (comp.sys.mac.hardware.misc)