Re: Cisco and Nmap Dos

From: Niklas Schiffler (nickat_private)
Date: Thu Sep 02 1999 - 07:52:15 PDT

  • Next message: Liraz Siri: "Auditing for RPC vulnerabilities? Use BASS"

    "Lancashire, Andrew" wrote:
    >
    > I don't know if you've ever seen this before.  We ran nmap with ICMP
    > discover and standard tcp scan.  We ran the scan against the entire 10.0.0.0
    > network range. Although we were only looking for 2 ports, we found that the
    > RSM in our 5500 series (our default route) was  running out of memory and
    > had to be rebooted by our Network Services group multiple times in the 18
    > hour stretch it took to complete. One of the interesting things is that we
    > were only generating about 3-5 Mbs and the 5500 can pass Gigabits.   I have
    > not heard of this problem before.  We contacted Cisco and sent them the
    > details.  Below is the response to one of our engineers.
    >
    > Andrew
    
    The same problem we had using a BinTec/BIANCA-BRICK XL router with NAT activated
    on the internet interface. We didn't have to reboot it as it did by itself. The
    problem occured in firmware version 4.8.3 and seems to be fixed in version 5.5.1.
    
    
    
    Nick..
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 15:02:56 PDT