[11591] in bugtraq
Re: OCE' 9400 plotters
daemon@ATHENA.MIT.EDU (Ryan Russell)
Mon Aug 30 03:49:20 1999
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Message-Id: <882567DD.0005504B.00@gwwest.sybase.com>
Date: Sun, 29 Aug 1999 17:57:54 -0700
Reply-To: Ryan Russell <Ryan.Russell@SYBASE.COM>
From: Ryan Russell <Ryan.Russell@SYBASE.COM>
X-To: "Larry W. Cashdollar" <lwcashd@BIW.COM>
To: BUGTRAQ@SECURITYFOCUS.COM
>My point was that by default the plotter can be used as a gateway, most people
>dont associate "security" with a plotter. I would guess that for people who
>dont know once the plotter is functional why read the rest of the manual.
>
>What vendors should do is force a password to be set upon installation.
My favorite way of handling this is that remote management isn't enabled
until a password is set, ala Cisco routers. Cisco seems to have missed that
on their Catalyst switches.
Ryan