Vulnerability Development mailing list archives
Re: Administrivia #4883/flowpoints
From: jms () NEGATION NET (jason storm)
Date: Fri, 14 Jan 2000 10:13:39 -0800
On Fri, 14 Jan 2000, Marc Esipovich wrote:
On Thu, 13 Jan 2000, jason storm wrote:depending on the version OS your flowpoint runs, you can limit what ip's can telnet in using the filter command. if you apply that feature correctly, you effectively prohibit brute forcing the router pw. treat it like cisco's access-list's retarded little brother and you wont be too disapointed.Well, adding a short delay in the code which authenticates the password would make brute-force pretty painful and time-consuming.
true.. adding a 5 second delay might make it take longer but the attack might well still go undetected unless one is in the habit of checking the system history on the router, and i doubt the vast majority of flowpoint owners do this. ultimately, delay code might turn a 1 day hack into a 1 week hack, but it probably wont stop someone dedicated from getting in. id say the most efficient solution is the filter still. -jason
Current thread:
- Re: Administrivia #4883 (fwd) jason storm (Jan 13)
- Re: Administrivia #4883 (fwd) Marc Esipovich (Jan 13)
- Re: Administrivia #4883/flowpoints jason storm (Jan 14)
- Re: Administrivia #4883/flowpoints Marc Esipovich (Jan 14)
- Re: Administrivia #4883/flowpoints jason storm (Jan 14)
- Re: Administrivia #4883 (fwd) Marc Esipovich (Jan 13)
