U2.3 TCP, Routers, VLAN

Description

Nework Security Mind Map on U2.3 TCP, Routers, VLAN, created by jjanesko on 08/04/2014.
jjanesko
Mind Map by jjanesko, updated more than 1 year ago
jjanesko
Created by jjanesko over 10 years ago
47
0

Resource summary

U2.3 TCP, Routers, VLAN
  1. TCP vs UDP
    1. TCP
      1. connection oriented
      2. UDP
        1. connectionless
      3. TCP handshake
        1. 1. node sends packet with SYN flag set
          1. 1.1 receiving node puts entry in its connection-half-open table for sending node
          2. 2. receiving node replies with a packet that has both SYN and ACK flags set
            1. 3. sending node responds with a packed with the ACK flag set
              1. 3.1 receiving node removes entry for sending node from its connection-half-open table
              2. RFC 793
                1. 4. parties are ready for communication
                2. Denial of Service
                  1. SYN flood attack
                    1. 1.Attacker sends many SYN packets to receiving node.
                      1. 2. Receiving node adds requests to half-open-connection table.
                        1. 3. Attacker does not send ACK packet.
                          1. 4. Receiving node's table gets full. Cannot process anymore connections.
                            1. IP source address can be spoofed for a more effective attack.
                          2. router
                            1. connects and allows communication between networks

                              Attachments:

                              1. routes packets in one of 3 ways
                                1. 1. direct delivery of a packet to a directly connected device
                                  1. 2. indirect delivery of a packet by forwarding the packet to a default router
                                    1. 3. next-hop delivery of a packet over a known route by forwarding to the next hop router
                                    2. Layer 3 device
                                    3. VLAN
                                      1. virtual local area network
                                        1. a switch's ports are split up so that logically there is more than one local area network configured
                                          1. subnets - VLANs set up on one switch
                                          2. VLANs are not meant to be a secure means of separating LANs.
                                          3. network vulnerability summary
                                            1. ARP spoofing
                                              1. MAC flooding
                                                1. SYN floods
                                                  1. IP Spoofing
                                                  Show full summary Hide full summary

                                                  Similar

                                                  U2.6 SNMPv3
                                                  jjanesko
                                                  U2.1 Cables, Hubs, Sniffers
                                                  jjanesko
                                                  U2.4 LANs, MANs, WANs
                                                  jjanesko
                                                  U2.5 SNMPv1
                                                  jjanesko
                                                  U2.1 Cables,Hubs,Sniffers- Thin Ethernet
                                                  jjanesko
                                                  U2.5 SNMPv1 - architectural model
                                                  jjanesko
                                                  U2.1 Cables, Hubs, Sniffers - Hub Diagram
                                                  jjanesko
                                                  U2.2 Switches, ARP - ARP spoofing steps
                                                  jjanesko
                                                  U2.3 TCP, Routers - Router Diagram
                                                  jjanesko
                                                  U2.5 SNMPv1 - SNMPv1 protocol stack
                                                  jjanesko
                                                  U2.2 Switches, ARP
                                                  jjanesko