IS Security

Comcast aims for the future

Tales from the Crypto - Sat, 03/20/2010 - 23:33

I’m visiting the in-laws in Texas this weekend, and I use the SSTP VPN in Windows Server 2008 R2 to connect home (my client is Windows 7, but it works just as well with Vista). Never had many problems with it up until this weekend.

Apparently, on Friday, we had a power cut back at the house, and our network connectivity is still not happening. I’ve asked the house-sitter to restart the servers and routers where possible, but it’s still not there.

So I went online to Comcast, to track down whether they were aware of any local outage. Sadly not, so we’ll just have to wait until I get home to troubleshoot this issue.

What I did see at Comcast, though, got me really excited:

Comcast is looking for users to test IPv6 connectivity!

Anyone who talks to me about networking knows I can’t wait for the world to move to IPv6, for a number of reasons, among which are the following:

  • Larger address space – from 2^32 to 2^128. Ridiculously large space.
  • Home assignment of 64 bits to give a ridiculously large address space to each service recipient.
  • Multicast support by default. Also, IPsec.
  • Everyone’s a first-class Internet citizen – no more NAT.
  • FTP works properly over IPv6 without requiring an ALG.
  • Free access to all kinds of IPv6-only resources.

So I can’t but be excited that my local ISP, Comcast, is looking to test IPv6 support. I only hope that it’ll work well with the router we have (and the router we plan to buy, to get into the Wireless-N range). Last time I was testing IPv6 connectivity, it turned out that our router was not forwarding the GRE tunneling protocol that was used by the 6-in-4 protocol used by Hurricane Electric’s Tunnel Broker.

Who knows what other connectivity issues we’re likely to see with whatever protocol(s) Comcast is going to expect our routers and servers to support? I can’t wait to find out

Categories: IS Security

Which Disney© Princess are YOU?

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Digital Privacy,Securing Code,Security Awareness,Security Policy Issues,Social Engineering

Paper Added: March 18, 2010

Categories: IS Security

IOSTrojan: Who really owns your router?

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Malicious Code

Paper Added: March 16, 2010

Categories: IS Security

Effective Use Case Modeling for Security Information & Event Management

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Auditing & Assessment,Best Practices,Intrusion Detection,Logging Technology and Techniques,Compliance

Paper Added: March 10, 2010

Categories: IS Security

Penetration Testing in the Financial Services Industry

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Penetration Testing

Paper Added: March 9, 2010

Categories: IS Security

Identifying Load Balancers in Penetration Testing

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Penetration Testing

Paper Added: March 9, 2010

Categories: IS Security

IT Guidance to the Legal Team

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Legal Issues

Paper Added: March 8, 2010

Categories: IS Security

Building Servers as Appliances for Improved Security

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Best Practices

Paper Added: March 8, 2010

Categories: IS Security

One Admin�s Documentation is their Hacker�s Pentest

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Auditing & Assessment

Paper Added: March 8, 2010

Categories: IS Security

Meeting Compliance Efforts with the Mother of All Control Lists (MOACL)

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Compliance

Paper Added: March 4, 2010

Categories: IS Security

Incident Handling as a Service

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Incident Handling

Paper Added: March 1, 2010

Categories: IS Security

Analyzing Enterprise PKI Deployments

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Auditing & Assessment

Paper Added: February 26, 2010

Categories: IS Security

Pass-the-hash attacks: Tools and Mitigation

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Penetration Testing

Paper Added: February 23, 2010

Categories: IS Security

SIEM Based Intrusion Detection with Q1Labs Qradar

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Intrusion Detection,Logging Technology and Techniques

Paper Added: February 18, 2010

Categories: IS Security

Reverse Engineering the Microsoft exFAT File System

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Forensics

Paper Added: February 18, 2010

Categories: IS Security

The Evolving Role of Security Structures

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Category: Management & Leadership

Paper Added: January 28, 2010

Categories: IS Security

Capturing and Analyzing Packets with Perl

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Intrusion Detection,Scripting Tips,Tools

Paper Added: January 28, 2010

Categories: IS Security

Winquisitor: Windows Information Gathering Tool

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Incident Handling,Tools

Paper Added: January 19, 2010

Categories: IS Security

Smart IDS - Hybrid LaBrea Tarpit

SANS Information Security Reading Room - Fri, 03/19/2010 - 04:32

Categories: Case Studies,Intrusion Detection,Intrusion Prevention

Paper Added: December 28, 2009

Categories: IS Security