Grabbing passwords in a IPX Network, security flaws in Novell Netware

Grabbing passwords in a IPX Network, security flaws in Novell Netware

Post by Daniel Ment » Wed, 11 Feb 1998 04:00:00



Hi Guys!

My Linux box is connected to a network running IPX and TCP/IP. I'm looking
for a utility that listens to a network interface and that grabs IPX
Packages. What I want to do, is to get some passwords when somebody logs
into the Novell Server. I believe that my network interface is able to grab
all Ethernet-frames because we don't use a switching Hub. Can you give me
some piece of advice ?

Does somebody know something about security flaws in Novell Netware ?

I'm sorry if this is the wrong newsgroup to ask about this, but I haven't
found the right one.

Thanks
 Daniel

 
 
 

Grabbing passwords in a IPX Network, security flaws in Novell Netware

Post by Pat Thoyt » Wed, 11 Feb 1998 04:00:00



> My Linux box is connected to a network running IPX and TCP/IP. I'm looking
> for a utility that listens to a network interface and that grabs IPX
> Packages. What I want to do, is to get some passwords when somebody logs
> into the Novell Server. I believe that my network interface is able to grab
> all Ethernet-frames because we don't use a switching Hub. Can you give me
> some piece of advice ?

The ipx tools package has an ipxdump and ipxparse program to enable you
to watch ipx traffic. tcpdump will also dump everything if you use the
ethernet address instead of the IP eg:

tcpdump ether 00:a0:00:00:00:00

or ipxdump 00:a0:00:00:00:00 | ipxparse

Quote:

> Does somebody know something about security flaws in Novell Netware ?

I don't know about too many flaws. I _DO_ know that the passwords in
novell servers are transmitted encrypted by default. You can find out
about this by looking at the source code for the mars dos utils
(look around the lsm catalogue: mars_dos or something)

The novell stuff is pretty secure. Certainly more so than the default IP
stuff.

Quote:

> I'm sorry if this is the wrong newsgroup to ask about this, but I haven't
> found the right one.

You probably really wanted alt.2600 or alt.I.want.to.hack or something.

Quote:

> Thanks
>  Daniel

--
Pat Thoyts                                Remove anti-spam to reply.
PGP Key at http://www.geocities.com/Yosemite/Rapids/1661/resume.html

 
 
 

1. Security from outside call-ins

I am on a Sun 3/260 running SunOS3.5.  Plugged into Serial Port A
I have a Microcom AX/2400 modem.  Some of the users at my site are
so dedicated that they actually want to be able to do some work
while they are home by way of calling in on their modems! (Can
you believe it?)  

Here's the question:  They (the users) have told me of other
systems they have been on (I believe Vax's) where they were
prompted to enter a system password before they were even asked for
thier own.  This could be some cryptic type of combination of
letters and numbers, making it almost impossible for the average
hacker to break. Anyone have ideas on how I could incorporate this
into my passwd file, but only having it prompt those who are dialing
in on the modem?  This could get to be a real pain if they had to
respond to another password everytime they logged in from a work-
station here at work.  

Then, once the caller successfully types in the system password,
they would still have to enter their own password.  Is such a
thing possible?  Thanks.
--
------------------------------------------------------------------
Don Cox :=)
UUCP: ..!rutgers!rochester!kodak!fedsys!scotty!dec
DISCLAIMER: The opinions expressed are mine and not of my employer.

2. 2.2.18: static rtc_lock in nvram.c

3. Dumb IPX/Novell Netware Query

4. Can't start XFree

5. Novell Netware clients crash Linux IPX-router

6. Upgraded from 2.2-GAMMA to 2.2-RELEASE: problems...

7. Security Vulnerability in Novell Netware 3.12 on HP-UX

8. What is this _Linux_Bible_ anyway ?

9. In search of Solaris 2.5 Netscape Navigator 3.0 plug ins

10. Need HELP to Log User Log-ins form the internet

11. Suse 7.0; Yast2, kinternet, rc.dialout und ich komme nicht ins Internet

12. Netscape plug-ins on AIX 4

13. what is a INS server?