Forums: Switch Question! - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Switch Question!

#1 User is offline   AtApi 

  • Private
  • Icon
  • Group: Members
  • Posts: 13
  • Joined: 03-September 03

Posted 05 May 2004 - 01:49 AM

Hi to all!
Just a question, is possible for an attacker to gain remotely info about a switch? like brand,model etc..
0

#2 User is offline   charon255 

  • Private
  • Icon
  • Group: Members
  • Posts: 19
  • Joined: 16-September 03

Posted 05 May 2004 - 11:00 AM

If the switch (or any device for that matter) is running SNMP with weak or default community strings, and SNMP is allowed through the firewall the switch is behind, then yes it is quite easy to get all of that info and more.

In addition, NMAP can do some profiling of network devices without using SNMP.
0

#3 User is offline   l0wkey 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 57
  • Joined: 17-December 03

Posted 05 May 2004 - 12:35 PM

Nmaps fingerprint can tell if its cisco or not, but if your lookin for model number or ios versions your gonna need to do like he said and get access via SNMP. Sometime admins are dumb with the telnet banners and leave some juicy information there like hostnames, which often have modelnumbers in them.
0

#4 User is offline   AtApi 

  • Private
  • Icon
  • Group: Members
  • Posts: 13
  • Joined: 03-September 03

Posted 06 May 2004 - 01:22 AM

Thanx for info guys!!
Pretty nice :P
0

#5 User is offline   easternerd 

  • Sergeant
  • Icon
  • Group: Members
  • Posts: 226
  • Joined: 23-December 03

Posted 23 August 2004 - 01:53 AM

l0wkey, on May 5 2004, 08:35 PM, said:

Nmaps fingerprint can tell if its cisco or not, but if your lookin for model number or ios versions your gonna need to do like he said and get access via SNMP. Sometime admins are dumb with the telnet banners and leave some juicy information there like hostnames, which often have modelnumbers in them.

Only if they've got an Ip Configured. Most of those fingerprints are based on HTTP and telnet port ,(configured using console otherwise) , So if the ip is not configured than nothing can be done.
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting