Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

In well maintained networks the management interface (IDRAC, etc.) for each server is placed on a separate VLAN which the servers cannot access. This isn't to say that cheap providers actually do this, or that the VLAN can't be accessed by a compromised technician's workstation/laptop.


So it's a fail-open design, given the rarity of well maintained networks, and the lability and inobservability of said state.

Never trust the network.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: