D-Link DSA-3200 Technické informace Strana 294

  • Stažení
  • Přidat do mých příruček
  • Tisk
  • Strana
    / 321
  • Tabulka s obsahem
  • KNIHY
  • Hodnocené. / 5. Na základě hodnocení zákazníků
Zobrazit stránku 293
xStack
®
DGS-3200 Series Layer 2 Managed Gigabit Ethernet Switch Web UI Reference Guide
280
How ARP Spoofing Attacks a Network
ARP spoofing, also known as ARP poisoning, is a method to attack an Ethernet network which may allow an attacker to sniff data
frames on a LAN, modify the traffic, or stop the traffic altogether (known as a Denial of Service DoS attack). The principle of
ARP spoofing is to send the fake or spoofed ARP messages to an Ethernet network. Generally, the aim is to associate the attacker's
or random MAC address with the IP address of another node (such as the default gateway). Any traffic meant for that IP address
would be mistakenly re-directed to the node specified by the attacker.
IP spoofing attack is caused by Gratuitous ARP that occurs when a host sends an ARP request to resolve its own IP address.
Figure-4 shows a hacker within a LAN to initiate ARP spoofing attack.
Figure 4
In the Gratuitous ARP packet, the “Sender protocol address” and “Target protocol address” are filled with the same source IP
address itself. The “Sender H/W Address” and “Target H/W address” are filled with the same source MAC address itself. The
destination MAC address is the Ethernet broadcast address (FF-FF-FF-FF-FF-FF). All nodes within the network will immediately
update their own ARP table in accordance with the senders MAC and IP address. The format of Gratuitous ARP is shown in the
following table
.
Table 5
Destination
Address
Source
Address
Ethernet
Type
H/W Type Protocol
Type
H/W
Address
Length
Protocol
Address
Length
Operation Sender H/W
Address
Sender
Protocol
Address
Target H/W
Address
Target
Protocol
Address
(6-byte) (6-byte) (2-byte) (2-byte) (2-byte) (1-byte) (1-byte) (2-byte) (6-byte) (4-byte) (6-byte) (4-byte)
FF-FF-FF-FF-FF-FF 00-20-5C-01-11-11
0806
ARP relay 00-20-5C-01-11-11 10.10.10.254 00-20-5C-01-11-11 10.10.10.254
A common DoS attack today can be done by associating a nonexistent or any specified MAC address to the IP address of the
network’s default gateway. The malicious attacker only needs to broadcast one Gratuitous ARP to the network claiming it is the
gateway so that the whole network operation will be turned down as all packets to the Internet will be directed to the wrong node.
Likewise, the attacker can either choose to forward the traffic to the actual default gateway (passive sniffing) or modify the data
before forwarding it (man-in-the-middle attack). The hacker cheats the victim PC that it is a router and cheats the router that it is
the victim. As can be seen in Figure 5 all traffic will be then sniffed by the hacker but the users will not discover.
Ethernet Header
Gratuitous ARP
Zobrazit stránku 293
1 2 ... 289 290 291 292 293 294 295 296 297 298 299 ... 320 321

Komentáře k této Příručce

Žádné komentáře

Alfa Romeo MITO manuály

Uživatelské manuály a uživatelské příručky pro Auta Alfa Romeo MITO.
Poskytujeme 1 manuály pdf Alfa Romeo MITO ke stažení zdarma podle typů dokumentů: Uživatelský manuál






Další produkty a příručky pro Auta Alfa Romeo

Modely Typ Dokumentu
159 Uživatelský manuál   Alfa Romeo 159 Owner`s manual, 338 stránky
GT Specifikace   Alfa Romeo GT Specifications, 270 stránky
33 Uživatelský manuál   Do It Yourself 4x4 switch for Alfa Romeo 33 16v Permanent 4, 38 stránky
33 Servisní příručka   Alfa Romeo 33 Technical data, 210 stránky
1750 Spider Veloce Uživatelský manuál Homologation paper list, 109 stránky