any advantages from using a HUb?

General Network security, firewalls, port filtering/forwarding, wireless security, anti-spyware, as well as spam control and privacy discussions.
Post Reply
User avatar
jeff8874
Regular Member
Posts: 245
Joined: Wed Aug 01, 2001 9:47 am
Location: Detroit,MI

any advantages from using a HUb?

Post by jeff8874 »

From a security standpoint, is there any advantages to branching your cable connection between 2 computers with a hub, or is it limited to routers only? I am aware what hubs do and what they don't do, and also what routers do as well. I was just wondering if any security advantage can come from using one at all, besides spliting a internet connection or creating a home network.
AMDAthlonXP 1800+
SoundBlaster Audigy MP3+
Radeon 7500 64mb Video
Maxtor 7200rpm 20gig HD
512SDRAM
XP PRO SP1
Motorola surfboard sb4100 modem
WideOpenwest Cable 1500/300

Pentium 3 1000mghz
512mb SDRAM
WinXP Pro
User avatar
YeOldeStonecat
SG VIP
Posts: 51171
Joined: Mon Jan 15, 2001 12:00 pm
Location: Somewhere along the shoreline in New England

Post by YeOldeStonecat »

Hubs are simply dumb repeaters used to connect computers on a LAN. Nothing to do with security. Similar to a switch, except switches work differently..perform better than a hub...but again, only used to connect a LAN...nothing to do with security. Neither are used to split or share an internet connection.

Routers, specifically home market routers like you're probably talking about....are used to connect networks. The home market routers do with with a method known as NAT...network address translation. This "hides" all the computers on the inside of the router from the outside...giving you a basic hardware firewall protection.
MORNING WOOD Lumber Company
Guinness for Strength!!!
cyberskye
Senior Member
Posts: 4717
Joined: Wed Jan 10, 2001 12:00 am
Location: DC

Post by cyberskye »

Hubs are simply dumb repeaters used to connect computers on a LAN. Nothing to do with security.


In a home setup I would agree with the security implications. In a business environment, a switched network is very important as it prevents someone from walking in with a laptop and sniffing your network.

...which brings me to the one (in my opinion) advantage to a hub in a home setup - you can plug a spare machine in running snort (or even tcpdump) and easily capture all network traffic. Makes IDS stuff a little easier - especially when all you have are non-managed switches.

Skye
anything is possible - nothing is free

:wth:
Blisster wrote:It *would* be brokeback bay if I in fact went and hung out with Skye and co (did I mention he is teh hotness?)
:wth:
User avatar
YeOldeStonecat
SG VIP
Posts: 51171
Joined: Mon Jan 15, 2001 12:00 pm
Location: Somewhere along the shoreline in New England

Post by YeOldeStonecat »

True...I was looking at it as if he was comparing a router, to a hub/switch...in "which one protected his network better" from the "outside...public side."...as in firewall.

Plus when I see cable, I automatically assume home because no cable ISP's sell to businesses at all around my area.
MORNING WOOD Lumber Company
Guinness for Strength!!!
cyberskye
Senior Member
Posts: 4717
Joined: Wed Jan 10, 2001 12:00 am
Location: DC

Post by cyberskye »

I love it when we're both right :cool:
anything is possible - nothing is free

:wth:
Blisster wrote:It *would* be brokeback bay if I in fact went and hung out with Skye and co (did I mention he is teh hotness?)
:wth:
User avatar
greEd
Posts: 807
Joined: Wed May 09, 2001 12:00 am
Location: Maryland

Post by greEd »

In a business environment, a switched network is very important as it prevents someone from walking in with a laptop and sniffing your network.


I would agree, but if the person walking up to your switch knows the first thing about mitm attacks, and understands all aspects of layer 2, 3 and 4 switching ... you got problems and you might as well plug into a hub. ;)
"I'm doing a (free) operating system (just a hobby, won't be big and professional...) for AT clones... It's not portable and it probably [won't ever] support anything other than AT hard disks, as thats all I have :-(." --Posted on Usenet August 1991 by Linus Trovalds
http://www.computerglitch.net
curiosity builds security | dd if=/dev/zero of=/dev/hda bs=512 count=100
EOF
User avatar
jeff8874
Regular Member
Posts: 245
Joined: Wed Aug 01, 2001 9:47 am
Location: Detroit,MI

Post by jeff8874 »

I knew the difference between a router with NAT, and a hub or switch. I was just curious to know if there was ANY benefit at all, or is it stricly just a splitter like I am using it for? If anything, it is a security disadvantage, because I am networking 3 pc's with file and print sharing. Until I figure out how I am going to secure my little network, I think I will disable file and print shares

Either way, I see there is no security advantage
:)

thanks for the input
AMDAthlonXP 1800+
SoundBlaster Audigy MP3+
Radeon 7500 64mb Video
Maxtor 7200rpm 20gig HD
512SDRAM
XP PRO SP1
Motorola surfboard sb4100 modem
WideOpenwest Cable 1500/300

Pentium 3 1000mghz
512mb SDRAM
WinXP Pro
User avatar
Bouncer
Senior Member
Posts: 4834
Joined: Thu Oct 14, 1999 12:00 pm
Location: OCONUS

Post by Bouncer »

A hub is a multiport repeater, and that is all it is.

As to sniffing a switch, a dumb switch is no more secure than a hub in that regard, only a VLAN capable or trunk group switch offers anything in the way of security in that sense.

Besides, anyone who is going to sniff your network is going to bring along an anlyzer to boot and ping sweep your networks.

I would reccommend you bind file and print sharing strictly to Netbeui and unbind it from TCP/IP. Netbeui is a non-routable protocol, so the packets won't go out the router WAN interface.

Regards,
-Bouncer-
User avatar
jeff8874
Regular Member
Posts: 245
Joined: Wed Aug 01, 2001 9:47 am
Location: Detroit,MI

Post by jeff8874 »

Yes, since I posted that last message, I have learned how to secure file and print sharing with the Netbeui protocol versus TCP/ip

Thanks for the input
AMDAthlonXP 1800+
SoundBlaster Audigy MP3+
Radeon 7500 64mb Video
Maxtor 7200rpm 20gig HD
512SDRAM
XP PRO SP1
Motorola surfboard sb4100 modem
WideOpenwest Cable 1500/300

Pentium 3 1000mghz
512mb SDRAM
WinXP Pro
User avatar
jeff8874
Regular Member
Posts: 245
Joined: Wed Aug 01, 2001 9:47 am
Location: Detroit,MI

Post by jeff8874 »

Originally posted by Bouncer
A hub is a multiport repeater, and that is all it is.


Besides, anyone who is going to sniff your network is going to bring along an anlyzer to boot and ping sweep your networks.

Regards,
-Bouncer-
What data or information can be obtained by doing this?
AMDAthlonXP 1800+
SoundBlaster Audigy MP3+
Radeon 7500 64mb Video
Maxtor 7200rpm 20gig HD
512SDRAM
XP PRO SP1
Motorola surfboard sb4100 modem
WideOpenwest Cable 1500/300

Pentium 3 1000mghz
512mb SDRAM
WinXP Pro
User avatar
Bouncer
Senior Member
Posts: 4834
Joined: Thu Oct 14, 1999 12:00 pm
Location: OCONUS

Post by Bouncer »

Where a sniffer is going to tell you what the packets on your ethernet contain, an Analyzer has the ability to go into the connected machine (and depending on it's security) tell you an amazing amount of detail about it, what software is installed, processes that may be running, user names, who's logged on and what their username is etc etc.

Regards,
-Bouncer-
User avatar
jeff8874
Regular Member
Posts: 245
Joined: Wed Aug 01, 2001 9:47 am
Location: Detroit,MI

Post by jeff8874 »

Would they have access to files??? I'm just curious what is the worst that can be retrieved ?
AMDAthlonXP 1800+
SoundBlaster Audigy MP3+
Radeon 7500 64mb Video
Maxtor 7200rpm 20gig HD
512SDRAM
XP PRO SP1
Motorola surfboard sb4100 modem
WideOpenwest Cable 1500/300

Pentium 3 1000mghz
512mb SDRAM
WinXP Pro
User avatar
Bouncer
Senior Member
Posts: 4834
Joined: Thu Oct 14, 1999 12:00 pm
Location: OCONUS

Post by Bouncer »

An ethernet sniffer has the ability to pick out text so passwords or other clear text info can be observed. An alyzer will tell you what shares are available, and if there's no password on them...

Regards,
-Bouncer-
Post Reply