TAILIEUCHUNG - SNMP Security

The Simple Network Management Protocol (SNMP) is an extremely useful protocol for monitoring and managing TCP/IP networks. Most networked systems come with at least a basic SNMP service enabled by default, allowing you to collect information about your network remotely. If write access is enabled, SNMP can also be used to configure devices on your network remotely. | Page 68 Friday February 15 2002 2 54 PM CHAPTER 8 SNMP Security The Simple Network Management Protocol SNMP is an extremely useful protocol for monitoring and managing TCP IP networks. Most networked systems come with at least a basic SNMP service enabled by default allowing you to collect information about your network remotely. If write access is enabled SNMP can also be used to configure devices on your network remotely. Since read-only SNMP is enabled by default on many systems it is an attacker s dream. An attacker can use SNMP to map out your entire network find out MAC and IP address binding and even find out exactly what hardware you are using and what software versions you are running. At attacker can then use that information to search vulnerability databases and analyze your network for vulnerable trust relationships. The following example shows just how much information an attacker can gain about your router and network through unsecured SNMP. Using the Net-SNMP snmpwalk program to get the routers system information through SNMP you see snmpwalk -vl RouterOne public system Cisco Internetwork Operating System Software IOS tm C2600 Software C2600-DO3S-M Version 5 T1 RELEASE SOFTWARE fcl Copyright c 1986-1999 by cisco Systems Inc. Compiled Tue 17-Aug-99 13 18 by cmong Jane Doe jdoe@ - Office BB 983 - X3334 RouterOne Building A Basement - Closet 936 You now have the exact hardware and software versions of this router contact information the router s name and its physical location. This is only the tip of the iceberg from a full snmpwalk you get a list of each interface on this router what types of interfaces they are and their physical and network addresses. Additionally you can get a complete list of this router s routing tables ARP tables and even how long the router has been up since the last boot. All of this information is a gold mine for someone .

TAILIEUCHUNG - Chia sẻ tài liệu không giới hạn
Địa chỉ : 444 Hoang Hoa Tham, Hanoi, Viet Nam
Website : tailieuchung.com
Email : tailieuchung20@gmail.com
Tailieuchung.com là thư viện tài liệu trực tuyến, nơi chia sẽ trao đổi hàng triệu tài liệu như luận văn đồ án, sách, giáo trình, đề thi.
Chúng tôi không chịu trách nhiệm liên quan đến các vấn đề bản quyền nội dung tài liệu được thành viên tự nguyện đăng tải lên, nếu phát hiện thấy tài liệu xấu hoặc tài liệu có bản quyền xin hãy email cho chúng tôi.
Đã phát hiện trình chặn quảng cáo AdBlock
Trang web này phụ thuộc vào doanh thu từ số lần hiển thị quảng cáo để tồn tại. Vui lòng tắt trình chặn quảng cáo của bạn hoặc tạm dừng tính năng chặn quảng cáo cho trang web này.