>
>How does one go upon "penetrating" the internal VLAN on a switch while only
>having access to the external VLAN and not traversing the PIX in the 
>middle?
>I have heard the response from numerous security engineers that anything is
>possible however I guess I'm a novice because I have never seen nor heard 
>of
>this being done in the situation mentioned above.  I attribute the idea of
>physically seperating these networks (even though VLAN based seperation is
>just as effective) as security paranoia.  This isn't necessarily a bad
>thing, after all that's what security guys are paid for, however I don't 
>see
>a technical reason why you can't have these VLANs connected to the same box
>as long as a properly configured firewall logically seperates them.

Launching a DoS on these devices is pretty easy, anything which transports 
data for management can be 'hacked'.

Rob./

_________________________________________________________________________
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=3759&t=3666
--------------------------------------------------
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to