>I understand. What about writing it into the plugin to dump those extra
>packets in so that it can be detected for sure?

if the queue size was increased (Cisco might have even recommended this as a
short term workaround),  you may be sending packets for a long,  long
time...I don't personally want a plugin running for that long (webmirror and
ike_check already run long enough :-) )....

>Is it common practice
>to have SNMP open on routers?

Depends on the interface really...many companies have SNMP open internally
(hey, it's a great tool after SNMPv1...) and disabled externally...

For internal scans, I have found myself running more and more often with
authorized userIDs and SNMP community strings....you just find a *ton* more
stuff....Mind you, Nessus is still a great tool for blackbox testing, but it
really cranks up when you've got some credentials....

John W. Lampe
https://f00dikator.aceryder.com/




---
Outgoing mail is certified Virus Free.
Checked by AVG anti-virus system (http://www.grisoft.com).
Version: 6.0.502 / Virus Database: 300 - Release Date: 7/18/2003

Reply via email to