I just commited in the CVS repository a simple script that detects RIP listeners (rip_detect.nasl) It outputs a hole if RIP-1 is used, as this protocol does not allow authentication and the routing tables can be poisoned. For RIP-2, it outputs a warning, which is not great. Does anybody see a *safe* way to test if routing tables can be poisoned in RIP-2 (and maybe other routing protocols too)? -- arboiat_private http://arboi.da.ru FAQNOPI de fr.comp.securite http://faqnopi.da.ru/
This archive was generated by hypermail 2b30 : Fri Aug 29 2003 - 02:30:28 PDT