NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
advantagecom
Mar 25, 2009Novice
Firmware 7.3.1.7
Has anyone running a GSM or FSM series L3 managed switch tried firmware 7.3.1.7? I'm really curious about stability of this new release. 7.1.1.7 and 7.2.1.6 were not very stable (IP routing, VLAN, ...
advantagecom
Aug 05, 2009Novice
[QUOTE=advantagecom;187408]It has now been a full month since I implemented the ACLs for the switch management and there still are no reloads.
That would point to one of the following as the source of the reloads:
That would point to one of the following as the source of the reloads:
It's now more than 3 months without a reload. Just for kicks, I setup the ACL so it exposed *only* SSH and the switch has been running that way for a little over a week. The hope was that I could get a reload with just one port exposed to vastly narrow down the root cause. Of course, the script kiddies haven't obliged and the logs have been quiet the entire week.
I fired up a dictionary attack against SSH on the switch and there are now tens of thousands of log messages with no reload caused, so it definitely isn't the logs filling up that causes the reload.
It also isn't just normal failed logins causing the reload. I've generated around 10,000 failed logins on the switch so far without it causing a reload.
One common vector of attack is a buffer overflow. The next thing to try is pasting in a huge text file for the username and doing the same for the password. Maybe it will finally keel over. ;)
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!