Unauthorised switchport access



Guys

I am responsible for several LANs that include sharing WCs with other organisations, and therefore access to my 3750 switches in unlocked cabinets.
I have no port security enabled and the ports are not shut down.
I would like to know the security implications of having unused switchports available to anyone eg with a laptop & DHCP configured?
Are there any simple pentests i could complete myself?
Is my organisation's network a sitting duck??
Thanks in advance!

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence
in Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Using interactive e-Learning technology, you can earn this esteemed degree,
without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------



Relevant Pages

  • RE: Restricting DHCP addresses to known MACs via Win2K DHCP server
    ... Port security isn't just available on cisco...it's available on many ... For example on 3COM SuperStack switches you can set security ... Restricting DHCP addresses to known MAC's via Win2K DHCP ...
    (Security-Basics)
  • Re: My "wire" / not yours
    ... There can be many devices using same MAC address. ... security, and in some cases 802.1x and proprietary switch port security ... > you to set the port to accept only one MAC address. ... > connecting hubs and switches or unauthorized computer. ...
    (microsoft.public.windows.server.setup)
  • Re: My "wire" / not yours
    ... There can be many devices using same MAC address. ... security, and in some cases 802.1x and proprietary switch port security ... > you to set the port to accept only one MAC address. ... > connecting hubs and switches or unauthorized computer. ...
    (microsoft.public.windows.server.networking)
  • Re: My "wire" / not yours
    ... There can be many devices using same MAC address. ... security, and in some cases 802.1x and proprietary switch port security ... > you to set the port to accept only one MAC address. ... > connecting hubs and switches or unauthorized computer. ...
    (microsoft.public.windows.server.security)
  • Re: My "wire" / not yours
    ... There can be many devices using same MAC address. ... security, and in some cases 802.1x and proprietary switch port security ... > you to set the port to accept only one MAC address. ... > connecting hubs and switches or unauthorized computer. ...
    (microsoft.public.windows.server.general)