[Wylug-help] VLANs and security

Timothy Baldwin T.E.Baldwin99 at members.leeds.ac.uk
Wed May 12 23:14:10 BST 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Tuesday 11 May 2004 17:42, Phil Driscoll wrote:

> A quick google search for VLAN related
> vulnerabilities and exploits reveals enough problems to make me think that
> physically separate networks are a much better idea.
>
> Any thoughts?

IPSec Transport mode may be useful for end-to-end encryption, with proxy
servers or tunnels+NAT to protect traffic leaving or entering the network
from sniffing and traffic analysis. There remains a risk of traffic analysis
if packets were to be sniffed.


- --
Member AFFS, WYLUG, SWP (UK), ANL, RESPECT, Leeds SA, Leeds Anti-war coalition
No to software patents!    No to DRM/EUCD - hands off our computers!
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFAoqG5jXSPyZ9/z+QRAjvbAJ4hTb//YJwIGNj1n5D2mfHDfRWCjgCgk0OX
IjYxb1PkMkQDN30zY7te8gg=
=BJuI
-----END PGP SIGNATURE-----




More information about the Wylug-help mailing list