Following my work with the
FreeBSD implementation of RFC 6980
I was happy to present my work at last week’s DENOG 9 meeting.
To make it available to anyone who did not meet me there and go into some more
detail that would have exceeded the boundaries of the talk, I will cover the
topic here.
After the preceding work on
Windows Server 2016
and the FreeBSD testing, as a Linux user, lover and administrator, I of course
wanted to take a look at how different Linux systems complied with the RFC 6980
standard.
A Cisco Catalyst 3560 switch running the software “C3560c405ex-UNIVERSALK9-M”
version 15.2(2)E4 connecting
A Linux based attacker system running Chiron and
A FreeBSD target system, running different OS versions and configurations and
A Linux based laptop running a control script that remotely performed the
necessary tasks on the two machines mentioned above
The main question was: Would the impact on the target system and the possible
attacks that were observed with the Windows Server 2016 victim be reproducible
on other operating systems? Or would those behave totally differently?