From: Mark Evans (Mark.Evans@Optimation.co.nz)
Date: Mon Sep 15 2003 - 15:41:29 EDT
> From: Steve Goldsby (ICS) [mailto:sgoldsby@networkarmor.com]
> Subject: RE: Cracking a Netscreen password
>
> You have to be able to restore that hashed password from a
> backup of the config file, so it shouldn't be dynamic once
> loaded. E.g. no random permutations.
also (perhaps to reiterate) the config from a 5 will reload
onto 25 or a 50 ..... so there are no per box (eg serial #)
or per type permutations either.
-- me --------------------------------------------------------------------------- FREE Trial! New for security consultants and in-house pros: FOUNDSTONE PROFESSIONAL and PROFESSIONAL TL software. Fast, reliable vulnerability assessment technology powered by the award-winning FoundScan engine. Try it free for 21 days at: http://www.securityfocus.com/sponsor/Foundstone_pen-test_030825 ----------------------------------------------------------------------------
This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:40 EDT