Penetration Testing mailing list archives

Re: VLAN hopping - demonstration


From: Christian Martorella <laramies2k () yahoo com ar>
Date: Wed, 18 Oct 2006 22:32:38 +0200

Hi all, a great tool that can do Vlan hopping and a lot of layer 2
attacks is Yersinia:

For example in vlans you can :

Send RAW VTP packet
Delete ALL VLANs
Delete selected VLAN
Add one VLAN

Check it here:  http://www.yersinia.net

Regards,

Christian Martorella
www.edge-security.com




dubaisans dubai wrote:
How do you demonstrate VLAN hopping?. I am trying to show this to a
customer who has mutliple DMZ segments configured as Layer2 VLANs on a
Cisco 6500 switch.  There is NO trunk port on this switch but DTP is
turned on on all ports.

Is it enough to cascade another L2 switch on an access port [ say VLAN
100] of the 6509, connect a desktop on this second switch and send a
packet with different VLAN ID [say VLAN 200] on the 6509.

Am I on the right track?

------------------------------------------------------------------------

This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW

------------------------------------------------------------------------






        
        
                
__________________________________________________
Preguntá. Respondé. Descubrí.
Todo lo que querías saber, y lo que ni imaginabas,
está en Yahoo! Respuestas (Beta).
¡Probalo ya! 
http://www.yahoo.com.ar/respuestas


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: