Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 09 Sep 1999 13:22:43 -0600
From:      Warner Losh <imp@village.org>
To:        James Wyatt <jwyatt@rwsystems.net>
Cc:        "Lowkrantz, Goran" <Goran.Lowkrantz@infologigruppen.se>, freebsd-security@FreeBSD.ORG
Subject:   Re: Lisen only NIC 
Message-ID:  <199909091922.NAA30860@harmony.village.org>
In-Reply-To: Your message of "Thu, 09 Sep 1999 13:09:40 CDT." <Pine.BSF.4.10.9909091259540.45536-100000@bsdie.rwsystems.net> 
References:  <Pine.BSF.4.10.9909091259540.45536-100000@bsdie.rwsystems.net>  

next in thread | previous in thread | raw e-mail | index | archive | help
In message <Pine.BSF.4.10.9909091259540.45536-100000@bsdie.rwsystems.net> James Wyatt writes:
: The only *true* way I know of to get a listen-only NIC, is to physically
: disconnect the xmit line on the NIC. When I read about this in the
: "Repelling the wiley hacker" internet firewall/security book and tried it
: on an old 3Com 3c503, I thought it was sufficient and *really* secure.
: (The book is so good I've loaned it out so email for ISBN. Great book!)

I've seen in other discussions that while you could do this with the
AUI based ethernet cards, you can't do this with 10base2 or 10base-t
cards.  Thinnet is obvious...  But the 10-base-t/100-base-t cards need
the xmit lines to negotiate speed settings with the hub.  Can anybody
confirm this?

Warner


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199909091922.NAA30860>