Penetration Testing mailing list archives

RE: Ping a mac address


From: Barrie Dempster <barrie () reboot-robot net>
Date: Tue, 06 Dec 2005 10:56:46 +0000

On Mon, 2005-12-05 at 16:57 +0200, Roni Bachar wrote:
p.s I know that I can scan both network with varies of tools and compare the
mac's but I rather not do it this way.


That wouldn't work anyway, since each network card would have a
different MAC address on the box, so you'd get two different MAC's per
box and would have no simple way to determine they came from the same
system.

With a large network spread over a few segments it will be quite
difficult to pull this off, however as has been mentioned before in the
thread to get your layer 2 info you are probably going to have to rely
on a little layer 3 help.

Without the aid of layer 3 or administrative access to the layer 2 (or
higher) devices, there isn't much that can be done here that's going to
be accurate enough to give you decent results on large networks.

Obviously we are not fully aware of the other limitations you have,
which prevent you from getting access to devices - however in the
current, admittedly naive position, I'd have to recommend pursuing
administrative access to layer 2 devices (and/or above) as the simplest,
most reliable method.

-- 
With Regards..
Barrie Dempster (zeedo) - Fortiter et Strenue

"He who hingeth aboot, geteth hee-haw" Victor - Still Game

blog:  http://reboot-robot.net
sites: http://www.bsrf.org.uk - http://www.security-forums.com
ca:    https://www.cacert.org/index.php?id=3

Attachment: smime.p7s
Description:


Current thread: