Great Circle Associates Firewalls
(August 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: huh? switch hitter?
From: lists @ lina . inka . de (Bernd Eckenfels)
Date: Wed, 14 Aug 1996 07:06:57 +0200 (MET DST)
To: roberth @ cet . com (Robert Hanson)
Cc: firewalls @ greatcircle . com
In-reply-to: <Pine . LNX . 3 . 94 . 960813205645 . 1983C-100000 @ cet . cet . com> from "Robert Hanson" at Aug 13, 96 08:58:11 pm

Hi,

> excuse my ignorance or lack or research, yet...
> what makes switched ethernet unable to be snarfed....

On a switched ethernet a NIC in promisc mode will only receive the packets
which are broadcasted (i.e. ARP) and those which are send directly to the
HW-Address of the interface. Thats the reason why u have less collisions
with switches, cause they simply filter the Packets on the net for each
port. You can also lock the arp-addresses in the switch for more security.

Greetings
Bernd
-- 
  (OO)      -- Bernd_Eckenfels @
 Wittumstrasse13 .
 76646Bruchsal .
 de --
 ( .. )  ecki @
 lina .
 {inka .
 de,ka.sub.org}  http://home.pages.de/~eckes/
  o--o     *plush*  2048/A2C51749  eckes @
 irc  +4972573817  *plush*
(O____O)       If privacy is outlawed only Outlaws have privacy


Follow-Ups:
References:
Indexed By Date Previous: re: Security on Frame Relay
From: "Jeff D. Hayes" <hayesjd @ mnbp2 . network . com>
Next: Re: Looking for SYN packet generator.
From: Joe Smith <joey @ getonthe . net>
Indexed By Thread Previous: huh? switch hitter?
From: Robert Hanson <roberth @ cet . com>
Next: Re: huh? switch hitter?
From: "Paul D. Robertson" <proberts @ clark . net>

Google
 
Search Internet Search www.greatcircle.com