Add new comment
Blackhat study reveals Ethernet less secure than IP-VPN
This presentation from the blackhat conference in Europe last year speaks directly to the point about the security issues between IP-VPN and Ethernet that I took issue with in my last blog.
A couple of the key points that I took from this presentation were:
- In the case of both Ethernet VPNs and IP-VPNs, in order to hack into a customers network from outside the network, the attacker must have access to the provider's core routers. (pg. 26)
- If an attacker has penetrated the customer's network through a backdoor or through weak physical security, he has some interesting options with an Ethernet VPN that do not exist on an IP-VPN network, especially in a VPLS environment. (pg. 34 and others)
- A reminder about how much I dislike spanning tree (pg. 38)
Hat Tip to Jim Lippard
Technorati Tags: Ethernet, VPLS, IP-VPN, Security
Trackback URL for this post:
http://blogs.globalcrossing.com/trackback/311
dsiegel – Mon, 2007 – 03 – 12 11:49








