[11591] in bugtraq

home help back first fref pref prev next nref lref last post

Re: OCE' 9400 plotters

daemon@ATHENA.MIT.EDU (Ryan Russell)
Mon Aug 30 03:49:20 1999

Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Message-Id:  <882567DD.0005504B.00@gwwest.sybase.com>
Date:         Sun, 29 Aug 1999 17:57:54 -0700
Reply-To: Ryan Russell <Ryan.Russell@SYBASE.COM>
From: Ryan Russell <Ryan.Russell@SYBASE.COM>
X-To:         "Larry W. Cashdollar" <lwcashd@BIW.COM>
To: BUGTRAQ@SECURITYFOCUS.COM

>My point was that by default the plotter can be used as a gateway, most people
>dont associate "security" with a plotter.  I would guess that for people who
>dont know once the plotter is functional why read the rest of the manual.
>
>What vendors should do is force a password to be set upon installation.

My favorite way of handling this is that remote management isn't enabled
until a password is set, ala Cisco routers.  Cisco seems to have missed that
on their Catalyst switches.

                              Ryan

home help back first fref pref prev next nref lref last post