Guide to Network Security Flashcards
What are protocols
Forms of ceremony and etiquette
Most common protocol used by LANs and internet
TCP /IP or Transmission Control Protocol / Internet Protocol
What protocol is TCP/IP
TCP/IP comprises several protocol that function together. They are called protocol suite.
Basics TCP/IP protocols that relate to Security
ICPM SNMP DNS File transfer and storage Telnet
What does ICMP do
ICMP : Internet Control Message Protocol
It handles communication between devices.
ICMP messages are divided into two classes
- Informational and query messages
- Error messages
Informational and query messages
These messages are used for devices to exchange information and perform testing
Error messages
provide feedback to another device about an error that has occurred
Attack of ICMP
- *Network discovery - reconnaissance to discover information about host
- *Smurf attack - broadcast a ping request to all computers on the network causing crash
- *ICMP redirect attack - redirect packet is sent to the victim asking the host to send its to another router (malicious device)
- *Ping of death - Malformed ICMP sent to victim’s computer causing the host to crash
What does SNMP do
A popular protocol used to manage network equipment
It allows network administrators to remotely monitor, manage, and configure devices on the network
community string
protected password that agents that managed devices used
Types of Community Strings
** A read -only string : which allows information from the agent to be viewed
** Read-Write String : Allows settings on the device to be changed
Default SNMP community strings for read only and read-write
Public and Private
What does DNS do
Domain Name System - It resolves a symbolic name with its corresponding IP address
Attack toward DNS
- DNS poisoning : Substitutes addresses so that computer is redirected to another device
- DNS transfer : ask valid DNS server for zone transfer
File Transfer Protocol FTP
Transferring files can be done using FTP; WHICH IS INSECURE.
Used to connect to an FTP server, much in the same way that HTTP links to a web server.