Possible hi-jacking of ospf chain.

From: Nikolaj (lorddoskias@gmail.com)
Date: Wed Jan 03 2007 - 06:07:51 EST


Hello,

Happy New Year to everyone, that's first. :)

I'm observing the traffic flow in my network and I see some strange
behavior with the OSPF packets. All of them contain plain-text password.
  I was wondering whether it was possible to join the OSPF chain and
route the traffic to /dev/null let's say and thus render the network
traffic unavailable? Or what can be done with this password? It's in the
OSPF LS Acknowledge and OSPF Hello packet.

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:57:30 EDT