Login or register
SecDocs RSS feed

Paper details

Title Developments in Cisco IOS Forensics
Type Paper
Tags forensic Cisco
Abstract Cisco System’s routers running Cisco IOS are still the prevalent routing platform on the Internet and corporate networks. Their huge population, architectural deficiencies and hugely diverse version distribution make them a valuable target that gains importance as common operating system platforms are closed down and secured. This paper takes the position that the currently used, well accepted practices for monitoring, debugging and post mortem crash analysis are insufficient to deal with the threat of compromised IOS devices. It sets forth a different method that reduces the requirement for constant logging, favoring on- demand in-depth analysis in case of suspicion or actual device crashes. The paper concludes by presenting the current state in the development of software supporting the proposed method and requesting feedback from the community on the software’s future directions.
Authors Felix 'FX' Lindner
Submitted March 01, 2008
Rating
Currently 0/5 stars (0 votes).
Correlation
Linked to
Event Black Hat DC 2008
Resource ---
Download
Source bh-dc-08-fx-WP.pdf
Size 73.5 KB
MD5 0d45713c907e8090609f8967763deda6
SHA1 65f3ed734e7b7a48656175dfebc0b0483189fc09

Comments
No comments.
Add new Only logged in users can comment.


Click here to lend your support to: SecDocs and make a donation at www.pledgie.com !