【24h】

OSV: OSPF VULNERABILITY CHECKING TOOL

机译:OSV:OSPF漏洞检查工具

获取原文

摘要

OSPF is one of a widely deployed intra-domain routing protocol in enterprise network operation around the world. As the protocol itself was introduced about two decades ago, it contains many known attacks which some of them can be patched by a newer version of the router firmware. Nevertheless, a reckless or a poor practice of network operator could jeopardize the system by forgetting to enable the OSPF authentication or use a password that can be easily guessed. Moreover, a lot of routers that still in operating out there are running with the out-of-date firmware, which surely contains security holes. Attacks on routing protocol could lead to severe damage to the network. In this paper, we introduce OSV as a tool to detect the OSPF network vulnerability by checking password strength and performing ten penetration testing against the target OSPF network. OSV also generates a report to inform any vulnerability found to help the network operator detect their security issues. We confirm the validation and the performance of OSV tool by testing it with Quagga and Cisco routers.
机译:OSPF是世界各地企业网络操作中广泛部署的域内路由协议之一。随着协议本身大约二十年前推出,它包含许多已知的攻击,其中一些可以通过路由器固件的较新版本进行修补。然而,网络运营商的鲁莽或糟糕的做法可以通过忘记启用OSPF身份验证或使用可以轻松猜到的密码来危及系统。此外,许多路由器仍在操作中运行了与过日期的固件运行,肯定包含安全漏洞。路由协议的攻击可能导致对网络的严重损坏。在本文中,我们将OSV作为一种通过检查密码强度和对目标OSPF网络执行十个穿透测试来检测OSPF网络漏洞的工具。 OSV还生成一个报告,以通知发现的任何漏洞,以帮助网络运营商检测到其安全问题。我们通过使用Quagga和Cisco路由器测试它来确认验证和osv工具的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号