[ovs-discuss] Q. about IP-, MAC-, arp-spoofing

Oliver Francke Oliver.Francke at filoo.de
Thu Jul 26 17:27:05 UTC 2012


Hi,

Am 26.07.2012 um 19:24 schrieb Luiz Ozaki <luiz.ozaki at locaweb.com.br>:

> On 7/26/12 6:38 AM, Oliver Francke wrote:
>> ovs-ofctl add-flow vmbr0 "in_port="${PORT}" ip idle_timeout=0 dl_src=${MAC} nw_src=${IP} priority=39000 action=resubmit("${PORT}",1)"
> If you're using the dl_type=0x0800, it should match the ARP protocol as well. So, you already preventing ARP spoofing as well.
> 
> Are you able to do this arp poisoning using these openflow setup or just theorycrafting ?
> 

I'm able to do this with ettercap, yes.

Regards,

Oliver.

> -- 
> Luiz Henrique Ozaki
> _______________________________________________
> discuss mailing list
> discuss at openvswitch.org
> http://openvswitch.org/mailman/listinfo/discuss

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://openvswitch.org/pipermail/ovs-discuss/attachments/20120726/57401f25/attachment.html>


More information about the discuss mailing list