|
Posted by Volker Birk on September 17, 2005, 9:40 am
If you were Registered and logged in, you could reply and use other advanced thread options
> I have been assigned a task to do a risk assessment for a Cisco router
> (7600 family). It has been a while since I played with a Cisco router.
This is an oxymoron. It will be difficult for you, I think.
> The routers I have configured (about 4 years ago) were much smaller.
> The IOS feature set seems to have changed a lot. In any case, this
> task has been assigned to me. The problem with this configuration file
> that I am analyzing has about 16000 lines of configuration. If you
> remove the comments/blank lines, probably 14000 lines. That is a huge
> configuration.
Yes. What's with the idea to structure and shorten this configuration
first?
> Now I have downloaded the Router Analysis Tool (RAT) from cisecurity.org
> site and executed it against the configuration file. The output files
> are straight forward. Is there any other tool that will do similar
> analysis on IOS configuration?
The best tool I know is called "brain" ;-) The configuration must be
read and reviewed.
> That would help me find some of the
> common problems identified from both the tools.
What problems are you targeting?
Yours,
VB.
--
"Es kann nicht sein, dass die Frustrierten in Rom bestimmen, was in
deutschen Schlafzimmern passiert".
Harald Schmidt zum "Weltjugendtag"
|