Penetration Testing mailing list archives

Re: unswitched behavior of a switched network...


From: Nicob <nicob () nicob net>
Date: Mon, 16 Oct 2006 21:44:23 +0200

Le vendredi 13 octobre 2006 à 09:32 -0700, Jon Hart a écrit :

Furthermore, even if the entries were expired, has anyone encountered
situations (malicious or otherwise), where a given port will receive
traffic outside of its own L2?

I recently see that on a Cisco Catalyst 6500 L3 swith with an up to date
IOS image. On some ports of a Gigabit slot, we sometimes see unicast
trafic of others VLAN or destinated to other IP addresses of the same
VLAN.

I wasn't able to explain this behaviour, it could be a hardware problem.


Nicob


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: