Great Circle Associates Firewalls
(January 1995)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Router filtering not enough! (Was: Re: CERT advisory )
From: "Mark A. Fullmer" <maf @ net . ohio-state . edu>
Date: Sun, 29 Jan 1995 11:51:28 -0500 (EST)
To: jmb @ kryten . atinc . com (Jonathan M. Bresler)
Cc: firewalls @ greatcircle . com
In-reply-to: <Pine . 3 . 89 . 9501262012 . A14053-0100000 @ kryten . atinc . com> from "Jonathan M. Bresler" at Jan 26, 95 08:48:26 pm
Reply-to: maf @ net . ohio-state . edu

Jonathan M. Bresler writes:
>
>	no response, no service.  furthermore, you can cache the arp data 
>in a file on your local dns server.  (write a tiny perl script to sit 
>around responding to requests, iteratively.  it can also notify you when 
>the guy with a pc in the next office decides to start using the wrong ip 
>number.  a common problem here, as we bring all the dussss and windoze 
>users to the real world)

ftp.net.ohio-state.edu:/pub/networking/arpmon/*

It passively watches arp requests (and replies if you're willing to take
the performance hit on the machine doing the monitoring) with tcpdump and
produces formatted reports.

-- 
mark
maf+ @
 osu .
 edu



References:
Indexed By Date Previous: Re: benefit of proxy-server
From: Rik Farrow <rik @ apache . spirit . com>
Next: Re: Nothing New
From: kovar @ nda . com
Indexed By Thread Previous: Re: Router filtering not enough! (Was: Re: CERT advisory )
From: "Jonathan M. Bresler" <jmb @ kryten . atinc . com>
Next: Re: Router filtering not enough! (Was: Re: CERT advisory )
From: brian @ wimsey . com (Brian J. Murrell)

Google
 
Search Internet Search www.greatcircle.com