Great Circle Associates Firewalls
(August 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: prevalence of sniffing ?
From: padgett @ tccslr . dnet . mmc . com (A. Padgett Peterson, P.E. Information Security)
Date: Tue, 2 Aug 94 07:37:38 -0400
To: "steven @ acpub . duke . edu"@UVS1.dnet.mmc.com
Cc: "firewalls @ GreatCircle . com"@UVS1.dnet.mmc.com

>Of course, you also need to watch out for a trojaned or altered version of
>ifconfig which has been doctored to not print out the word "promiscuous".

This assumes that the sniffer is a recognized machine. For someone with
physical access to the net, all it takes is a PC, a NIC, and DOS software 
such as GOBBLER. No IP address necessary. 
						Warmly,
							Padgett

Indexed By Date Previous: Screening & routers
From: padgett @ tccslr . dnet . mmc . com (A. Padgett Peterson, P.E. Information Security)
Next: Intrusion Detection and AI
From: padgett @ tccslr . dnet . mmc . com (A. Padgett Peterson, P.E. Information Security)
Indexed By Thread Previous: prevalence of sniffing ?
From: francis @ avalle . insoft . com (John [Francis] Stracke)
Next: Simple Firewall Recommendation
From: "Steve Moubray" <SMOUBRAY @ dor10 . mdor . state . mn . us>

Google
 
Search Internet Search www.greatcircle.com