pen-test
[Top] [All Lists]

Re: Locating switches in a multi-layer switching environment

To: "Jon R. Kibler" <Jon.Kibler@aset.com>
Subject: Re: Locating switches in a multi-layer switching environment
From: "Ivan ." <ivanhec@gmail.com>
Date: Wed, 21 Mar 2007 17:01:10 +1100
Cc: pen-test@securityfocus.com
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=P8sV/+EaR8/+NS8jLRTOzhw2/Zo6K6DtFPTl4u/xNvdRjH8Jhi/+OIfF6FUjviv27sqrsV4iXHORPswqo/Pq6jBpdptVSzTDc1yR32EtSCTLlHmDslinBYKyC02qqYl/h0JvJSMrZBG9fTW2DMB8uOQsO88ggpAwG93HfUnnqRU=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=o4vGnMXu6TLiiuzKj7qM3iUvkKA4f36aOPsJWGlhQZu2RwWlIxOWunaUKAO3axRQGD3PK25k0qw5XQN3D9T1wu6l3WBc1jT8sAD5Si6hibqisRABi0Z8VjpJ9LAMVS6ch/jH7BcqzGgjR78YK9NoRTIpkmEkei4QE778R8vMuXU=
In-reply-to: <45FC99E7.2060908@aset.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
References: <45FC99E7.2060908@aset.com>
Resent-date: Fri, 23 Mar 2007 14:43:10 -0700 (MST)
Resent-from: pen-test-return-1078483820@securityfocus.com
Resent-message-id: <20070323214310.DEB7523797D@outgoing3.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hi Jon,

Assume it's Cisco we're talking about? If so CDP would be helpful in
this situation.

Here is a previous thread, old but useful
http://seclists.org/pen-test/2003/May/0124.html

Also, give ICMP and SNMP a shot

cheers
Ivan

On 3/18/07, Jon R. Kibler <Jon.Kibler@aset.com> wrote:
Hi,

A network recon question: When pen testing an environment that deploys 
multi-layer switching, how can one reliably map the network and the relative 
location of all of the switches?

Add to this VLANS... How can you map VLANs that are on the network, especially 
if your access is but on one VLAN, and that VLAN is different than the switch 
management VLAN?

Thoughts, tools, tricks, white papers, etc. appreciated.

THANKS!
Jon Kibler
--
Jon R. Kibler
Chief Technical Officer
Advanced Systems Engineering Technology, Inc.
Charleston, SC  USA
(843) 849-8214



------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------



------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>