[c-nsp] Change Pix passwds, without getting logged?

Curtis Doty Curtis at GreenKey.net
Fri Mar 24 11:39:22 EST 2006


Terje Bless wrote:
> We recently had one of our Pix firewalls get compromised, probably through an
> unsecured serial console access, and have their passwords changed. Nothing
> really out of the ordinary except the Pix is set to log to an external syslog
> server and the password change commands are nowhere to be found in the logs.
>   

Syslog is udp/stateless and non-reliable.

../C



More information about the cisco-nsp mailing list