[HECnet] Multinet Tunnel Connections to SG1::

Mark Benson md.benson at gmail.com
Thu Jun 7 11:02:45 PDT 2012


On 7 Jun 2012, at 10:32, Dave McGuire <mcguire at neurotica.com> wrote:

On 06/07/2012 05:09 AM, Johnny Billquist wrote:
Indeed. In addition to the fact that I'm not clear what security threat
we're talking about here...

I'm not convinced at all that there's any sort of security issue here.

It is marginally less secure based on thus:

Any OS can be violated to provide root access. In normal circumstances
the ethernet interface does not expose other packets. On a system
running with the interface in promiscuous mode it does expose other
packets. Thus if the system's security is breached (i.e. the box is
rooted) it exposes more than the normal level of information about
your network without the perpetrator needing to act (i.e. run a
scanner of their own) to get it.

Like I said it's minimal. If your box gets rooted you are screwed anyway ;)

-- 
Mark Benson

http://markbenson.org/blog
http://twitter.com/MDBenson



More information about the Hecnet-list mailing list