Skip to content

Comment on The Little White Box That Can Hack Your Networkparent

Comments

I disagree that it is naive. At the recently finished RSA conference it was a common theme in many of the discussions. Basically operations is going to 'lose the war' of trying to control every device that is inside your network because there are phones, and tablets, and personal computers etc. which all want to be 'connected' at some level. So creating an infrastructure that is tolerant of that may ultimately become the norm.

Apparently in some sensitive facilities there are networks keyed off by MAC address, and then 802.1x key, so you need to have both the right MAC and the right key for that MAC to get an address and to send and receive packets. Connecting to the network switch with a 'non-authorized' MAC puts you on a different VPN than the if you connect with an authorized machine.

One of the attendees at the show told me they assumed that their network was 'unsafe' all the time and planned accordingly.

Now its probably naive to think we would go there in a year or two but it does seem to be a road we're being inexorably forced down.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.