|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Re: Lisen only NIC
Rodney W. Grimes (freebsd
gndrsh.dnsmgr.net)
Thu, 9 Sep 1999 12:42:53 -0700 (PDT)
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
- Next message: Rodney W. Grimes: "Re: Lisen only NIC"
- Previous message: sthaug
nethelp.no: "Re: Lisen only NIC"
- In reply to: Warner Losh: "Re: Lisen only NIC"
- Next in thread: Mark Newton: "Re: Lisen only NIC"
> In message <Pine.BSF.4.10.9909091259540.45536-100000
bsdie.rwsystems.net> James Wyatt writes:
> : The only *true* way I know of to get a listen-only NIC, is to physically
> : disconnect the xmit line on the NIC. When I read about this in the
> : "Repelling the wiley hacker" internet firewall/security book and tried it
> : on an old 3Com 3c503, I thought it was sufficient and *really* secure.
> : (The book is so good I've loaned it out so email for ISBN. Great book!)
>
> I've seen in other discussions that while you could do this with the
> AUI based ethernet cards, you can't do this with 10base2 or 10base-t
> cards. Thinnet is obvious...
Actually 10base2 and 10baseT cards are usually very easy to do, they
still have an AUI interface between the NIC chip and the MAU chip. You
just need to find it on the board and ``clip'' the traces.
> But the 10-base-t/100-base-t cards need
> the xmit lines to negotiate speed settings with the hub. Can anybody
> confirm this?
Dual mode cards, and actually 100BaseT changed the game somewhat. But
thankfully MII came along. MII is a fancier AUI, I don't have a data
book with it in here, but you should be able to achive the same effect
by cutting the Xmit pair between the NIC and MII chip. It may fail
auto-negotiation, but given that the MII chip is suppose to handle all
that it may just work fine.
Anyone have the datasheet on the SEEQ NQ80220/G MII chip so I can do
some surgery and test things out??
Oohhhhh... and is anyone seeing this from very recent Kingston KNE100TX
cards:
de0: <Digital 21143 Fast Ethernet> rev 0x41 int a irq 10 on pci0.14.0
de0: 21143 [10-100Mb/s] pass 4.1 (invalid EESPROM checksum)
de0: address 00:c0:f0:4a:07:54
de0: enabling 100baseTX port
The cards work fine... but our customers are asking what is up with this
and I wanted to ask if anyone else is seeing it on any DEC based cards.
-- Rod Grimes - KD7CAX - (RWG25) rgrimesgndrsh.dnsmgr.net
To Unsubscribe: send mail to majordomo
FreeBSD.org with "unsubscribe freebsd-security" in the body of the message
- Next message: Rodney W. Grimes: "Re: Lisen only NIC"
- Previous message: sthaug
nethelp.no: "Re: Lisen only NIC"
- In reply to: Warner Losh: "Re: Lisen only NIC"
- Next in thread: Mark Newton: "Re: Lisen only NIC"
This archive was generated by hypermail 2.0b3 on Thu Sep 09 1999 - 14:45:40 CDT