<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ItsyourIP.com &#187; Security Audit</title>
	<atom:link href="http://www.itsyourip.com/category/security-audit/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.itsyourip.com</link>
	<description>Your gateway to Internet</description>
	<lastBuildDate>Sat, 24 Jan 2009 16:48:31 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<image>
<link>http://www.itsyourip.com</link>
<url>http://www.itsyourip.com/wp-content/mbp-favicon/Internet-Alt.ico</url>
<title>ItsyourIP.com</title>
</image>
		<item>
		<title>Nipper is Zipper &#8211; Integrated to Ziptie Network Inventory &amp; Configuration Management</title>
		<link>http://www.itsyourip.com/ip-tools/nipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=nipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament</link>
		<comments>http://www.itsyourip.com/ip-tools/nipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament/#comments</comments>
		<pubDate>Thu, 06 Dec 2007 19:52:51 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[IP Tools]]></category>
		<category><![CDATA[OpenSource]]></category>
		<category><![CDATA[Security Audit]]></category>
		<category><![CDATA[configuration-management]]></category>
		<category><![CDATA[nipper]]></category>
		<category><![CDATA[ziptie]]></category>

		<guid isPermaLink="false">http://www.itsyourip.com/ip-tools/nipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament/</guid>
		<description><![CDATA[Nipper, the opensource Security Audit Tool that can perform Securiy Audits of Network Device Configurations is now integrated into ZipTie, a Network Inventory and Configuration Management framework. Nipper in Ziptie will be called as Zipper. Since, Ziptie supports all the network devices that can be audited by Nipper, all the functionality Nipper are available under [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><!--adsense#content_336_280-->
<p><a href="http://www.itsyourip.com/networking/nipper-network-device-security-audit-tool/" target="_blank" title="Nipper - Opensource Network Device Security Audit Tool">Nipper</a>, the opensource Security Audit Tool that can perform Securiy Audits of Network Device Configurations is now integrated into ZipTie, a Network Inventory and Configuration Management framework. Nipper in Ziptie will be called as Zipper.</p>
<p><span id="more-123"></span></p>
<p>Since, Ziptie supports all the network devices that can be audited by Nipper, all the functionality Nipper are available under Ziptie. An admin has to select the device and select Nipper to run the audit on the backedup configuration file.</p>
<p>Because, of the different licensing on both the products (Ziptie uses MPL while Nipper uses a GPL license). Zipper is not available out of the box and has to be installed using the plugin and is supported only on Windows at the moment and there is an intention to extend to other platforms on which ZipTie is supported.</p>
<p>For more information and download, <a href="http://wiki.ziptie.org/bin/view/Documentation/NipperIntegration" target="_blank" title="Zipper - Nipper Security Audit Tool integration in Ziptie">click here</a></p>
<script type="text/javascript">
  addthis_url    = 'http%3A%2F%2Fwww.itsyourip.com%2Fip-tools%2Fnipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament%2F';
  addthis_title  = 'Nipper+is+Zipper+%26%238211%3B+Integrated+to+Ziptie+Network+Inventory+%26%23038%3B+Configuration+Management';
  addthis_pub    = '';
</script><script type="text/javascript" src="http://s7.addthis.com/js/addthis_widget.php?v=12" ></script>
</div><!-- KonaBody -->]]></content:encoded>
			<wfw:commentRss>http://www.itsyourip.com/ip-tools/nipper-is-zipper-integrated-to-ziptie-network-inventory-configuration-managament/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nipper &#8211; Network device Security Audit tool</title>
		<link>http://www.itsyourip.com/networking/nipper-network-device-security-audit-tool/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=nipper-network-device-security-audit-tool</link>
		<comments>http://www.itsyourip.com/networking/nipper-network-device-security-audit-tool/#comments</comments>
		<pubDate>Tue, 11 Sep 2007 12:49:41 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[IP Tools]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security Audit]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[ios]]></category>
		<category><![CDATA[juniper]]></category>
		<category><![CDATA[netscreen]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[nipper]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[screenos]]></category>

		<guid isPermaLink="false">http://www.itsyourip.com/networking/nipper-network-device-security-audit-tool/</guid>
		<description><![CDATA[Nipper is an Opensource tool for network device congiguration and security audit. Nipper performs security audits of network device configuration files. The report produced by Nipper includes; detailed security-related issues with recommendations, a configuration report and various appendices. Nipper can run on both Windows and Linux operating system. Nipper can be downloaded from here Nipper [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><!--adsense#content_336_280--><strong>Nipper</strong> is an Opensource tool for network device congiguration and security audit. Nipper performs security audits of network device configuration files. The report produced by Nipper includes; detailed security-related issues with recommendations, a configuration report and various appendices. <span id="more-37"></span> Nipper can run on both Windows and Linux operating system. Nipper can be downloaded from <a href="http://sourceforge.net/project/showfiles.php?group_id=191582" target="_blank" title="Nipper, Opensource Network device security audit tool">here</a> Nipper currently supports the following Network devices:</p>
<p><strong><em>Cisco IOS-based Switches </em></strong></p>
<p><strong><em>Cisco IOS-based Routers</em></strong></p>
<p><strong><em>Cisco IOS-based Catalysts</em></strong></p>
<p><strong><em>Cisco NMP-based Catalysts</em></strong></p>
<p><strong><em>Cisco CatOS-based Catalysts</em></strong></p>
<p><strong><em>Cisco PIX-based Firewalls</em></strong></p>
<p><strong><em>Cisco ASA-based Firewalls</em></strong></p>
<p><strong><em>Cisco FWSM-based Firewalls</em></strong></p>
<p><strong><em>Cisco CSS-based Content Service </em></strong><strong><em>Switches</em></strong></p>
<p><strong><em>Juniper NetScreen ScreenOS-based Firewalls</em></strong></p>
<p>Simply capture the configuration of the Network device onto a text file and run it through Nipper to Audit the config file and output its Audit results in HTML,XML,latex or plain text format. There are a lot of options that can be specified at the command line, a simplest command that show what Nipper is upto will be.</p>
<p>The following is an example of running Nipper on Windows from the download directory on a Cisco IOS Switch config file</p>
<p><strong>c:\Nipper&gt;nipper &#8211;ios-switch &#8211;input=test.cfg.tct &#8211;output=output.html</strong></p>
<p>where,</p>
<p><em>&#8211;ios-switch is the device type</em></p>
<p><em>&#8211;input specifies the device config text file</em></p>
<p><em>&#8211;output specifies the output file.</em></p>
<p>This creates the output file in the current directory (or where mentioned to). What impresses is the orderly formatting of the results with a great deal of information, good enough to understand the imapct of any identified issue. Nipper performs a security audit of a device and produces a report which can include the following sections:</p>
<p><strong>Security Related Issues </strong><strong>Introduction</strong></p>
<p><strong>The issues Configuration Report </strong><strong>Introduction</strong></p>
<p><strong>The configuration Appendix Section</strong></p>
<p><strong>Abbreviations</strong></p>
<p><strong>Timezones</strong></p>
<p><strong>Common Ports</strong></p>
<p><strong>Logging Severity Levels </strong></p>
<p><strong>Version Details</strong></p>
<p>During a security audit Nipper can test passwords and connection timeouts, these can be configured from the command line.</p>
<p>The configurable options are:</p>
<p>Timeout</p>
<p>Minimum Password Length</p>
<p>Passwords must contain upper case characters</p>
<p>Passwords must contain lower case characters</p>
<p>Passwords must contain numbers</p>
<p>Passwords must contain special characters</p>
<p>Passwords can contain upper or lower case characters</p>
<p>Dictionary for testing against passwords&nbsp;</p>
<p>Nipper will decode Cisco type 7 passwords, other passwords can be output to a john-the-ripper file for further testing. Nipper includes support for a variety of different device types and gathers a lot of information whilst performing a security audit. However, nipper does not gather all information from a device configuration.</p>
<p>The following describes what information is used and what security issues nipper identifies.</p>
<p><strong>IOS-Based Configuration Settings</strong></p>
<ul>
<li>Hostname</li>
<li>IOS Version</li>
<li>Timezone and offsets</li>
<li>Authorative Time Source</li>
<li>Service Password Encryption</li>
<li>Minimum Password Length</li>
<li>IP Source Routing</li>
<li>Bootp</li>
<li>Service Config</li>
<li>TCP Keep Alives</li>
<li>Cisco Express Forwarding</li>
<li>Gratuitous ARP</li>
<li>Classless Routing</li>
<li>Domain Name</li>
<li>Domain Lookup</li>
<li>DNS Servers</li>
<li>Enable Passwords</li>
<li>Users</li>
<li>Privilages</li>
<li>Banner</li>
<li>Telnet</li>
<li>SSH</li>
<li>HTTP</li>
<li>Finger</li>
<li>TCP / UDP Small Services</li>
<li>NTP</li>
<li>SNMP 1, 2 and 3</li>
<li>CDP</li>
<li>PAD</li>
<li>Logging</li>
<li>Syslog</li>
<li>Buffered Logging</li>
<li>Terminal Logging</li>
<li>FTP</li>
<li>TACACS</li>
<li>AAA</li>
<li>BGP</li>
<li>VRRP</li>
<li>EIGRP</li>
<li>RIP</li>
<li>OSPF</li>
<li>Routes</li>
<li>Route Maps</li>
<li>Keys and Key Chains</li>
<li>Lines</li>
<li>Interfaces</li>
<li>VTP</li>
<li>Switch Ports</li>
<li>NAT (All types)</li>
<li>ACL (All types)</li>
</ul>
<p> <strong>IOS-Based Security Issues</strong>
<ul>
<li>Software Versions</li>
<li>Dictionary-Based / Default Passwords</li>
<li>Weak Passwords</li>
<li>Auto-Configuration</li>
<li>IP Directed Broadcasts</li>
<li>BGP Route Dampening</li>
<li>OSPF Authentication</li>
<li>EIGRP Authentication</li>
<li>RIP Authentication</li>
<li>VRRP Authentication</li>
<li>TCP Keep Alives</li>
<li>Connection Timeouts</li>
<li>AUX Port</li>
<li>Source Routing</li>
<li>Finger</li>
<li>HTTP</li>
<li>SNMP Version 1 / 2</li>
<li>Telnet</li>
<li>Redirects</li>
<li>Access Lists</li>
<li>uRPF Verification</li>
<li>Switch Port Mode</li>
<li>Switch Port Security</li>
<li>Logging</li>
<li>Proxy ARP</li>
<li>SSH Protocol Version</li>
<li>CDP</li>
<li>Classless Routing</li>
<li>Minimum Password Length</li>
<li>Bootp</li>
<li>TCP / UDP Small Servers</li>
<li>IP Unreachables</li>
<li>IP Mask Reply</li>
<li>Enable Secret</li>
<li>Password Encryption</li>
<li>Banners</li>
<li>Domain Lookup</li>
<li>PAD</li>
<li>MOP</li>
</ul>
<p> <strong>PIX/ASA/FWSM-Based Configuration Settings</strong>
<ul>
<li>Hostname</li>
<li>Domain Name</li>
<li>Version</li>
<li>Transparent Firewall</li>
<li>Enable Password</li>
<li>Users</li>
<li>SSH</li>
<li>Interfaces</li>
<li>NAT / PAT</li>
<li>Routing</li>
<li>Access Control Lists</li>
<li>ICMP Access</li>
<li>Protocol Analysis</li>
<li>Group Objects</li>
<li>Name Mappings</li>
</ul>
<p> <strong>PIX/ASA/FWSM-Based Security Issues</strong>
<ul>
<li>Connection Timeouts</li>
<li>Access Control Lists</li>
<li>SSH Protocol Version</li>
</ul>
<p> <strong>CSS-Based Configuration Settings</strong>
<ul>
<li>Hostname (a little hack, recommend specifying)</li>
<li>CSS Version</li>
<li>FTP Server</li>
<li>SNMP</li>
<li>SSH Server</li>
<li>Telnet Server</li>
<li>Web Management Server</li>
<li>Access Control Lists</li>
</ul>
<p> <strong>CSS-Based Security Issues</strong>
<ul>
<li>SNMP</li>
<li>Telnet</li>
<li>Access Control Lists</li>
</ul>
<p> <strong>CatOS/NMP-Based Configuration Settings</strong>
<ul>
<li>Hostname</li>
<li>NMP Version</li>
<li>Location</li>
<li>Contact</li>
<li>Core Files</li>
<li>Syslog Files</li>
<li>Idle Session Timeout</li>
<li>Port Security Auto Configure</li>
<li>Enable Passwords</li>
<li>Login Passwords</li>
<li>ICMP Redirects</li>
<li>IP Unreachables</li>
<li>IP Fragmentation</li>
<li>CDP</li>
<li>SNMP</li>
<li>Permit Lists</li>
<li>VLAN Configuration</li>
</ul>
<p> <strong>CatOS/NMP-Based Security Issues</strong>
<ul>
<li>Dictionary-Based / Default Passwords</li>
<li>Weak Passwords</li>
<li>Connection Timeouts</li>
<li>IP Redirects</li>
<li>CDP</li>
<li>IP Unreachables</li>
</ul>
<p> <strong>ScreenOS-Based Configuration Settings</strong>
<ul>
<li>Hostname</li>
<li>Administrative Settings</li>
<li>Users</li>
<li>Alerting</li>
<li>Timeouts</li>
<li>Authentication Server</li>
<li>Admin Privilages</li>
<li>SSH</li>
<li>Interfaces</li>
<li>Policies</li>
<li>Name Lists</li>
</ul>
<p> <strong>ScreenOS-Based Security Issues</strong>
<ul>
<li>Policies</li>
<li>Connection Timeout</li>
<li>Administrative HTTP Redirect</li>
<li>Management IP Address</li>
</ul>
<p> For more information and options, please visit <a href="http://www.titania.co.uk/nipper.php" target="_blank" title="Nipper, Opensource Network device security audit tool">here</a></p>
<script type="text/javascript">
  addthis_url    = 'http%3A%2F%2Fwww.itsyourip.com%2Fnetworking%2Fnipper-network-device-security-audit-tool%2F';
  addthis_title  = 'Nipper+%26%238211%3B+Network+device+Security+Audit+tool';
  addthis_pub    = '';
</script><script type="text/javascript" src="http://s7.addthis.com/js/addthis_widget.php?v=12" ></script>
</div><!-- KonaBody -->]]></content:encoded>
			<wfw:commentRss>http://www.itsyourip.com/networking/nipper-network-device-security-audit-tool/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

