May 26 2005
Bejtlich on Net Optics Think Tank
Richard Bejtlich write’s up last week’s Think Tank put on by Net Optics. He does a much better job writing this up than I did. He also goes into more detail than I felt appropriate, but given that he has a pretty close relationship with Net Optics, he probably knows what they’re okay with.
I talked with Richard some at the Think Tank, and we both agree that having SNMP control over your taps is a dubious idea at best. I hope they take his idea to heart and give us some way to manually disable SNMP. I don’t want this to be part of the software configuation. I want a dip switch that you have to have physical access to enable. I like the idea of SNMP traps from the switch, but write access is a no-go for me.