pen-test
[Top] [All Lists]

Re: Virtual environments security

To: pen-test@securityfocus.com
Subject: Re: Virtual environments security
From: Luke Eckley <luke@xifos.org>
Date: Fri, 29 Dec 2006 14:46:31 -0800
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
In-reply-to: <19168ADD-2073-496F-8418-2F01A1219A36@michel.eti.br>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mail-followup-to: pen-test@securityfocus.com
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <20061214162918.260.qmail@web53205.mail.yahoo.com> <4588D4BD.3070205@gmail.com> <19168ADD-2073-496F-8418-2F01A1219A36@michel.eti.br>
Resent-date: Fri, 29 Dec 2006 17:43:05 -0700 (MST)
Resent-from: pen-test-return-1078483349@securityfocus.com
Resent-message-id: <20061230004305.A697224335E@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
User-agent: Mutt/1.5.12-2006-07-14
On Thu, Dec 28, 2006 at 10:56:35AM -0200, Michel Pereira wrote:
>       I saw a problem last week when I logged into a Guest OS hosted at a  
> Virtual Server. I installed ethereal and saw all the traffic that  
> goes to the entire server, no only my virtual server.
>       I wanna known if this is a configuration problem of a normal  
> behavior of every Virtual Machine environment (maybe Vmware has this  
> problem too)?

Using VMware:
This is because the guest hosts all share the same virtual network
device on the host. I had this problem when setting up some honeypots
using vmware. I solved the problem by making new vmware virtual network
devices and putting the guests on separate devices. 

There is one problem with this approach that I haven't really had the 
time to investigate --- the guest hosts in this system will not be able
to communicate with each other...

Luke Eckley
http://luke.xifos.org

<Prev in Thread] Current Thread [Next in Thread>