HZGN.COM
welcome to my space
X
Search:  
Feng Shui | Graphic Design | Cosmetics | Causes and Organizations | Regulatory Compliance | Gadgets and Gizmos | Computer Forensics | Tools and Equipment | Related articles
Welcome to:hzgn.com
NAVIGATION: Home >>
The Not-Infallible Cisco 802.1x
Published by: anonym 2009-01-08

The 802.1x port-based security standard is often considered the best method of security for network access control (NAC) implementations. But that's not to say that all 802.1x implementations are always secure and bug-free.

Cisco this week reported that a pair of its 802.1x supplicants (an 802.1x component used in the client endpoints) had flaws that, if exploited, could have allowed an attacker to gain user privileges, modify files or otherwise damage the availability or confidentially of the system.

The Cisco Secure Services Client (CSSC) and a lightweight version of CSSC included in the Cisco Trust Agent (CTA) within the Cisco Network Admission Control (NAC) Framework had privilege escalation and password disclosure vulnerabilities that Cisco has now corrected.

Cisco has fixed four different privilege escalation bugs. According to Cisco's advisory, one of the bugs could potentially have allowed an unprivileged user who is logged into the computer to increase their privileges to the local system user via the help facility within the supplicant Graphical User Interface (GUI).

l 110 - - Compare Prices, Read Product Reviews, and Buy - Shopping.com::
Rucci Square Travel Mirror 3 X 3 1X/ 10X Magnification assure the accuracy of product information, we do not assume any liability for inaccuracies.
http://www.shopping.com/xCC-l_110~PG-~Z-
HOME
Another bug could have enabled a logged-in, unprivileged user to launch any program with full system privileges.

Cisco also fixed an unintentional password disclosure bug. The advisory notes that with certain authentication methods, a user password is logged in cleartext (i.e. non-obfuscated or encrypted) in the respective application's log files.

LANDesk Gives in to 802.1x NAC::
The Not-Infallible Cisco 802.1x. •Its a NAC World For Network Security. Or is it? Thats not to say that 802.1x is infallible, as Cisco recently discovered.
http://news.earthweb.com/infra/article.php/3671206
HOME
Wireless Networking - 56k dial up on laptop 802.11G ?::
The above is what I consider FW software whether or not its running on 802.11b is NOT a limitation. David. William P. N. Smith. 2005-07-25, 11:48 pm
http://hardware.mcse.ms/archive80-2005-8-215514.html
HOME
Cisco is not the only vendor that uses 802.1x as a method for deploying NAC. StillSecure and others, such as Cisco, in the NAC space, also provide alternatives to 802.1x, including DHCP and inline approaches.

That's not to say that the reported vulnerabilities don't take a bit of the shine off the 802.1x halo.

"Unfortunately, anytime vulnerabilities or security issues arise around 802.1x, its viability as the most secure method for enforcing NAC is called into question," Alan Shimel, chief strategy officer at access control vendor StillSecure, told internetnews.com.

"That being said, 802.1x remains the most secure way of testing and controlling access to the network at the port level."




Red Hat's Rough Recovery From CFO Exit
Windows Live Finds a New, Pre-installed Home

  • prototypejs ajax request preloading extjs
  • newb problem understanding ajax handling
  • this getel dom submit
  • 2 0b1 solved desktop dataview path has no properties
  • gridpanel loads data but won t sort
  • toolbar image buttons
  • image in a gridpanel
  • ext extend best way to handle configs
  • login form with user password remember
  • adding html in tab containing property grid
  • close all tabs
  • can t do column layout to include buttons
  • how to not display treenode toggle icon
  • formpanel looks ugly on ff ok on ie
  •  
  • border layout problem and question regarding accordion
  • solved how does editorgrid work with json
  • extra bar on formpanel in ie
  • what is the correct way to load extrernal extjs based html
  • shortcut in deksktop from submenu
  • center a window
  • how to customize east west side panels in a borderlayout
  • confused about managed component destruction
  • 2 0b1 solved desktop menu help
  • anchored form elements following column layout
  • button padding
  • add a new portalcolum to the portal on fly
  • grid row cell detail balloon on hover
  • #If you have any other info about this subject , Please add it free.#
    Your name:
    E-mail:
    Telphone:

    Your comments:


    If you have any other info about The Not-Infallible Cisco 802.1x , Please add it free.

    About us -Site map -Advertisement -Jion us -Contact usExchange linksSponsor us
    Copyright© 2008 hzgn.com All Rights Reserved
    Site made&Support support@hzgn.com    E-mail: web@hzgn.com