RE: UPDATE/DETAILS Re: SNMP full access backdoor on IOS

From: Mike Bernico (MBernico@xxxxxxxxxxxx)
Date: Mon Feb 26 2001 - 18:34:31 GMT-3


   
I've heard the same thing. Cisco is supposed to make an official anoucment
at 4:00 eastern today

Mike

-----Original Message-----
From: Troy Rader [mailto:troy@onenet.net]
Sent: Monday, February 26, 2001 3:17 PM
To: Rich Russell; ccielab@groupstudy.com
Subject: UPDATE/DETAILS Re: SNMP full access backdoor on IOS

> ----------
> From: Troy Rader[SMTP:TROY@ONENET.NET]
> Sent: Monday, February 26, 2001 3:17:28 PM
> To: Rich Russell; ccielab@groupstudy.com
> Subject: UPDATE/DETAILS Re: SNMP full access backdoor on IOS
> Auto forwarded by a Rule
>
All,

I'm told this is a somewhat limited backdoor. It is not full SNMP access,
only access to LANE & PNNI mib variables, the sysname, loc, and contact. It
is resolved either with IOS upgrades, or some Cisco recommended config
changes.

I consider this information very reliable. Has anyone heard differently?

Troy

----- Original Message -----
From: "Rich Russell" <rich@thetestpage.net>
To: <ccielab@groupstudy.com>
Sent: Monday, February 26, 2001 11:57 AM
Subject: SNMP full access backdoor on IOS

> Did anyone else here about the backdoor with the community string of ILMI
> for all IOS's under 12.1.4s??
>
> Major security whole.
>
> www.thetestpage.net
> downloadable tests and router rack available
>



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:29:03 GMT-3