Wednesday, January 16, 2008

Network mapping built in and notification of bad network security practices

Gnome and Kde should have a means of showing their interpretation of the network. This should include elements such as known switches, internet gateway, incorrectly addressed traffic, external wireless routers and wireless traffic.

This would allow network technicians to see if a hub is being used instead of a proper switch which properly addresses traffic (hubs are a security risk) and even if PPPOE isn't properly set up (as it will show traffic coming coming all from a single external IP). Microsoft has a limited subset of this implemented. Apple hasn't got any of it. If Linux had it, many network technicians could avoid using a packet sniffer for simple issues potentially.


The best part is that having an intelligent part of accessing this data could help notify users if other users on their personal network may be able to see their data. While you can never guarentee the security of the internet, many users wouldn't even be able to recognise how insecure they are on a public wireless network for instance. If you see traffic addressed to another IP on your computer, it means that its likely the network is insecure.

Etherape is an example of a tool which shows a minimalist example of network mapping.

No comments: