Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 38 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 18, 2013, 10:01:01 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 [2] 3 4 ... 15
16  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 11, 2011, 10:09:36 AM
As you can probably tell, it really irks me that such a simple thing is getting in my way.  I keep telling myself there MUST BE A WAY.  It's just networking.  I have Cisco IOS, I have admin credentials for the box at the other end, just no way to get a TCP connection because return traffic is being dropped.
17  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 11, 2011, 10:00:16 AM
Yeah, thanks for the suggestions but you are right.  If only there were a way to invoke WSH or WMI from the router... ugh.
18  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 10, 2011, 07:19:13 PM
Other things I've thought of:

There is somewhat of a port of netcat for IOS called IOScat, though it has limited functionality and even still it would be the same as port forwarding.

No return traffic rules out TCP, but UDP should work?  Maybe there's an exploit that can use entirely UDP, sort of like blind sql injection but with packets, lol.

If there was a way of embedding shell + netsh command into a payload, capturing the packets and then replaying them from the router, not sure how to do that though.
19  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 10, 2011, 07:14:36 PM
No ssh or telnet, but windows file sharing is on.  I was thinking port forwarding, but i think the problem with the gateway still persists since the source addr is not changed, or am I wrong?
20  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 10, 2011, 06:01:47 PM
There is only one box, so, correct.
21  Ethical Hacking Discussions and Related Certifications / Networking / Re: Set gateway from router on: October 10, 2011, 05:37:38 PM
No worries, consider this to be a generic remote office setup.  Windows XP box sitting behind a Cisco router, running the most up to date Cisco IOS 15.X.  Users use the system locally as a standalone box.  VPN is for remote training, troubleshooting, administration, updates, etc.  In this case the installer forgot to set that one little setting.....default gw.

You are correct in your understanding, so you know what my problem is.  No gateway = no routing.  One way traffic is fine, but the responses never come back.  I can get to the server from the router itself, as you say.
22  Ethical Hacking Discussions and Related Certifications / Networking / Set gateway from router on: October 10, 2011, 11:06:18 AM
Interesting dilemma, I don't know if this is possible.

Topology
(corp hq)----{internet}-----[VPN router]-----(windows XP box)

IPSec VPN tunnel is up between remote VPN router and corp HQ.  Windows machine is directly connected to the internal side of the router, but no default gateway is set.

I can SSH into the router and ping the windows box, but cannot ping the windows box directly.

Is there a way to set the gateway FROM the router since that's the only way I can communicate to it?  The alternative is flying to the remote site and setting the gateway.  Ouch.

Any help would be appreciated.  I have tried a few things without success (for example, enable NAT on the router to do translation; does NOT work because the order NAT is applied versus the VPN tunnel).

Hacks are welcome as long as the remote site is recoverable afterward!  Smiley

23  Resources / Career Central / Re: New job.. I drive 2 hours a day now..any good pod-cast to listen to? on: October 10, 2011, 10:42:41 AM
I drive about 1 - 1.5 hours each day, and I listen to a LOTTTTTT of audiobooks.  Plus TWiT if I'm between books.
24  Ethical Hacking Discussions and Related Certifications / Networking / Re: CCNA Advice on: October 07, 2011, 02:28:35 PM
It looks like you have a lot of answers here, but I'll have a go as well.

I have very recent experience as a Cisco network engineer.  I took the CCNA 802 exam in 2006, it expired, and I just passed the two ICND exams this year (ICND2 passed about 2 months ago).

If your purpose is to work with Cisco long term, do the 2 exams.
If you just want network experience and the cert, do the 1 exam.


The 2 exam route was harder in my opinion than the 1 exam since ICND2 has more questions on harder material (spanning-tree, frame relay, routing protocol details, etc.).

ICND1 was jokingly easy if you know how to subnet.  ICND2 takes subnetting for granted and almost every question has in depth subnet steps to even know what is being asked.

For the 1 exam route, think of half the questions being too easy and the other half being normal, versus 1 test on easy and 1 on hard.  Literally.  I do intend to continue with CCNP/CCIE, so I took the 2 exams, and the extra studying I had to do was worth it for the long run.

As for material, I used Wendell Odom books ICND1/2 kit for kindle.  I tried it, probably won't do it on Kindle again.  It worked out OK for me to use Odom's books because I tend to read the whole book cover to cover, do all the practice questions, then do the practice questions again, then do practice tests.  I know Cisco very well now.  Other books tend to teach to the exam, which is probably fine in your case.  I've been recommended Lammle's books as well, but I have no experience so I can't say one way or the other.

Finally, as for labs, GNS3 will be plenty sufficient for CCNA level studying, if you can get your hands on IOS...
25  Ethical Hacking Discussions and Related Certifications / Other / Re: Links to EH.Net on: September 01, 2011, 03:07:37 PM
I saw this last week some time, got as far as creating a new Topic here on EH-Net, and then closed it, thinking it didn't deserve the extra attention.

LOL @ hacking that site though, that's pretty funny, not unexpected.
26  Ethical Hacking Discussions and Related Certifications / Other / Re: Kevin Mitnick interview on TWiT on: August 31, 2011, 08:47:06 AM
I watch Hak5 on/off.  I try to watch everyone when I can.  "http://www.grmn00bs.com"  is another site to watch some good blog videos. Not sure if that link was posted on here.

I think they should release a movie on him since I look back on "Track Down" after reading most of his book and it seems like none of it was actually accurate.  I mean it kind of sucked if you were really interested in what happened. I guess it reminds you to go to the source.

It's funny you should mention a movie.  They talk about that in the interview, how everyone thought they knew the Kevin Mitnick story and nobody wanted "another" movie/book.  Apparently Kevin couldn't tell the story except what was publicly known by court order until something like 2007.  Now that's up, the new book really tells the story.

As for podcast/vidcast, I like to listen in the car on a 45 min commute, so videos are out.  That's why I like TWiT, but as lorddicranius says, sometimes it gets tiring listening to the same people constantly.  I'd like to pick up something else just as a change in scenery, but I've had a hard time finding a good podcast that's technical enough, informative, and not boring.

Hak5 is video only if I'm not mistaken, or at least you need the video to really know what's going on.  Otherwise I'd probably get into it more.

Can you download PaulDotCom podcast without iTunes?  (I can't stand iTunes.)
27  Ethical Hacking Discussions and Related Certifications / Other / Re: Kevin Mitnick interview on TWiT on: August 30, 2011, 08:17:30 AM
Wouldn't it figure, twit.tv just changed their site around and now the link is busted.  http://twit.tv/show/triangulation/21

Good to know they're up on youtube as well.

Anyone else a TWiT listener?  I regularly listen to TNT, TWIT, TWIG, sometimes Security Now (but I've gotten a little bored with Steve Gibson), and the Triangulation interviews are pretty cool.
28  Ethical Hacking Discussions and Related Certifications / Other / Kevin Mitnick interview on TWiT on: August 29, 2011, 07:47:40 AM
Last week Leo Laporte and Tom Merritt interviewed Kevin Mitnick on their Triangulation podcast.  It wasn't bad, he's a good story teller for sure.  I think it was good timing to promote his newest book Ghost in the Wires.

http://www.twit.tv/tri21
29  Ethical Hacking Discussions and Related Certifications / Other / Re: Many certs within the next month on: August 15, 2011, 09:23:03 PM
Speaking of exams, I have CEH exam coming up, and I just passed CCNA 2 weeks ago.  I gotta finish CEH quickly too because I have a software engineering class coming up in the fall at the university.

I feel ya..>!!!!!  Grin
30  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-July 2011 Free Giveaway Winners - Sequrit on: August 15, 2011, 09:19:52 PM
Congrats all!!!  This is a really good prize..
Pages: 1 [2] 3 4 ... 15
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.068 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.