[nsp-sec] How to hijack traffic for an entire Content/Ad Company - ARP Poisoning revisited - 8800.org / 6600.org badness

Sean Donelan sean at donelan.com
Thu Mar 27 12:29:50 EDT 2008


On Thu, 27 Mar 2008, Chris Morrow wrote:
> so.. port-security is a solved problem for datacenters no?? Also, Barry
> should chime in here with some more/other direct experience... Barry??

Nope, not really a solved problem.  Now think about the fun you can have 
with metro-wide, country-wide carrier ethernet systems being deployed. The
amount of changes necessary to the "defaults" is insane.  Not just bad
stuff, but also the junk traffic.

Friends don't let friends do ARP.




More information about the nsp-security mailing list