Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

Re: VALN hopping

Subject: Re: VALN hopping
Date: Fri, 30 Sep 2005 19:54:14 +0200
WWe are having a heated discussion about using VLAN's as a type of
DMZ, so
I am asking the experts.  I prsonally like to see physical isolation;
however, our network person doesn't feel there is a threat of VLAN
hopping.  Please let me know your opinions.

If they are new devices with up-to-date OS versions it is not very likely
that attacks similar to double encapsulated 802.1q packets will succeed. On
the other hand, if they are not properly configured and/or hardened, other
attacks can be accomplished, like for instance, with Cisco devices, setting
up a trunking if DTP settings are poorly configured (see
http://yersinia.sourceforge.net for performing that attack).

--
David Barroso Berrueta 
Not one day goes by that I don't ride, 'til the infinite, the horse of my 
imagination

<Prev in Thread] Current Thread [Next in Thread>